CVE-2007-5093 - CERT CVE
ID CVE-2007-5093
Sažetak The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consumption in khubd) by not closing the device after the disconnect is invoked. NOTE: this rarely crosses privilege boundaries, unless the attacker can convince the victim to unplug the affected device.
Reference
CVSS
Base: 4.0
Impact: 6.9
Exploitability:1.9
Pristup
VektorSloženostAutentikacija
LOCAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE COMPLETE
CVSS vektor AV:L/AC:H/Au:N/C:N/I:N/A:C
Zadnje važnije ažuriranje 07-11-2023 - 02:01
Objavljeno 26-09-2007 - 21:17