The disconnect method in the Philips USB Webcam (pwc) driver in Linux kernel 2.6.x before 2.6.22.6 "relies on user space to close the device," which allows user-assisted local attackers to cause a denial of service (USB subsystem hang and CPU consumption in khubd) by not closing the device after the disconnect is invoked. NOTE: this rarely crosses privilege boundaries, unless the attacker can convince the victim to unplug the affected device.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-09-26 14:17
Updated : 2023-02-12 18:18
NVD link : CVE-2007-5093
Mitre link : CVE-2007-5093
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
linux
- linux_kernel