ubuntu · CVE-2016-3137

Quick triage

Priority: low Published: 2016-05-02 00:00:00 UTC Updated: 2025-09-25 08:14:42 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-3137 low priority: Ubuntu including 99 source packages (linux, linux-armadaxp, …), 828 status rows across 13 suites (artful, bionic, focal, jammy, noble, plucky, precise, trusty, upstream, wily, xenial, yakkety, zesty): DNE 549, not-affected 133, released 113, ignored 33.

Description:

drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device without both an interrupt-in and an interrupt-out endpoint descriptor, related to the cypress_generic_port_probe and cypress_open functions.

cvelogic Threat Intelligence