Security Advisory

CVE-2016-3136

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-05-02 10:00:00
Last updated 2024-08-05 23:47:57
Assigner microfocus
State PUBLISHED

Description

The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted USB device without two interrupt-in endpoint descriptors.