peter bassill · operator
$ cve CVE-2009-4067 JSON

CVE-2009-4067 EXPLOIT

6.8
MEDIUM · CVSS 3.1 · EPSS 2.1% (pctl 81)

Patch early

A public exploit exists.

Description

Buffer overflow in the auerswald_probe function in the Auerswald Linux USB driver for the Linux kernel before 2.6.27 allows physically proximate attackers to execute arbitrary code, cause a denial of service via a crafted USB device, or take full control of the system.

Scoring

CVSS6.8 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS2.06% — more likely to be exploited than 81% of all CVEs
WeaknessCWE-120
On CISA KEVno
Public exploityes
Published2020-02-11
Last modified2026-06-16

Affected (2)

VendorProduct
linuxlinux kernel
redhatenterprise linux

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD