CVE Database
/

CVE-2017-15102

Back to search

CVE-2017-15102

Published: Nov 15, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occurs after a race condition and a NULL pointer dereference.

VendorProductVersions

n/a

Linux kernel through version 4.9-rc1

affected
Linux kernel through version 4.9-rc1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now