CVE Database
/

CVE-2007-5093

Back to search

CVE-2007-5093

Published: Sep 26, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consumption in khubd) by not closing the device after the disconnect is invoked. NOTE: this rarely crosses privilege boundaries, unless the attacker can convince the victim to unplug the affected device.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2008:0275
vendor-advisory
x_refsource_REDHAT
30294
third-party-advisory
x_refsource_SECUNIA
20070902 Oops in pwc v4l driver
mailing-list
x_refsource_MLIST
20070903 Re: Oops in pwc v4l driver
mailing-list
x_refsource_MLIST
RHSA-2008:0972
vendor-advisory
x_refsource_REDHAT
28706
third-party-advisory
x_refsource_SECUNIA
26994
third-party-advisory
x_refsource_SECUNIA
DSA-1504
vendor-advisory
x_refsource_DEBIAN
MDVSA-2008:008
vendor-advisory
x_refsource_MANDRIVA
oval:org.mitre.oval:def:10494
vdb-entry
signature
x_refsource_OVAL
USN-558-1
vendor-advisory
x_refsource_UBUNTU
DSA-1381
vendor-advisory
x_refsource_DEBIAN
MDVSA-2008:105
vendor-advisory
x_refsource_MANDRIVA
DSA-1503
vendor-advisory
x_refsource_DEBIAN
USN-574-1
vendor-advisory
x_refsource_UBUNTU
29058
third-party-advisory
x_refsource_SECUNIA
28971
third-party-advisory
x_refsource_SECUNIA
25504
vdb-entry
x_refsource_BID
28170
third-party-advisory
x_refsource_SECUNIA
32799
third-party-advisory
x_refsource_SECUNIA
USN-578-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2007-5093 - Security Vulnerability | QwikSec