Linux kernel OZWPAN driver DoS Vulnerability (CVE-2015-4002)
Linux kernel OZWPAN driver DoS Vulnerability (CVE-2015-4002)
Release date:
Updated on:
Affected Systems:
Linux kernel < 4.0.5
Description:
CVE (CAN) ID: CVE-2015-4002
Linux Kernel is the Kernel of the Linux operating system.
In versions earlier than Linux kernel 4.0.5, The OZWPAN driver drivers/staging/ozwpan/ozusbsvc1.c has a security vulnerability. Remote attackers construct data packets through the oz_usb_rx and oz_usb_handle_ep_data functions, this vulnerability can cause denial of service or arbitrary code execution.
<* Source: anonymous
*>
Suggestion:
Vendor patch:
Linux
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://github.com/torvalds/linux/commit/9a59029bc218b48eff8b5d4dde5662fd79d3e1a8
Https://github.com/torvalds/linux/commit/d114b9fe78c8d6fc6e70808c2092aa307c36dc8e
Http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit? Id = 9a59029bc218b48eff8b5d4dde5662fd79d3e1a8
Http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit? Id = d114b9fe78c8d6fc6e70808c2092aa307c36dc8e
How to install Kernel 4.0.2 on CentOS 7
How to install Linux Kernel 4.0 on CentOS 7
How to install Linux kernel 4.0 on Ubuntu/CentOS?
How to install Linux kernel 13.10 On Ubuntu 3.12
How to install the 3.16.7 CKT2 kernel in Ubuntu 14.10, Ubuntu 14.04, and its derivative versions
Linux Kernel: click here
Linux Kernel: click here
This article permanently updates the link address: