4.9
CVSSv2

CVE-2016-3139

Published: 27/04/2016 Updated: 07/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.6 | Impact Score: 3.6 | Exploitability Score: 0.9
VMScore: 495
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel prior to 3.17 allows physically proximate malicious users to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.

Vulnerable Product Search on Vulmon Subscribe to Product

novell suse linux enterprise module for public cloud 12.0

novell suse linux enterprise server 11.0

novell suse linux enterprise server 12.0

novell suse linux enterprise live patching 12.0

novell suse linux enterprise real time extension 11.0

novell suse linux enterprise real time extension 12.0

novell suse linux enterprise desktop 12.0

novell suse linux enterprise workstation extension 12.0

novell suse linux enterprise debuginfo 11.0

novell suse linux enterprise software development kit 11.0

novell suse linux enterprise software development kit 12.0

linux linux kernel

Vendor Advisories

The wacom_probe function in drivers/input/tablet/wacom_sysc in the Linux kernel before 317 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor ...

Exploits

OS-S Security Advisory 2016-11 Linux wacom multiple Nullpointer Dereferences Date: March 4th, 2016 Authors: Sergej Schumilo, Hendrik Schwartke, Ralf Spenneberg CVE: not yet assigned CVSS: 49 (AV:L/AC:L/Au:N/C:N/I:N/A:C) Title: Multiple Local RedHat Enterprise Linux DoS â?? RHEL 71 Kernel crashes on invalid USB device descriptors (wacom driver) ...