Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2015-7833

15
FAUCET Score

CVE-2015-7833 describes a denial-of-service vulnerability in the usbvision driver of specific Linux kernel versions for Red Hat Enterprise Linux and SUSE Linux Enterprise products. A physically proximate attacker can trigger a system panic by presenting a USB device with a non-zero bInterfaceNumber value in its descriptor. This vulnerability has a CVSS score of 4.9, indicating a low attack complexity and local attack vector, leading to a complete system availability impact. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
12CPE matchmatch criteria
cpe:2.3:o:novell:suse_linux_enterprise_real_time_extension:12:sp1:*:*:*:*:*:*
7.1CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:7.1:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

4.9MEDIUM

AV:L/AC:L/Au:N/C:N/I:N/A:C

Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
6.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
0.68%
Probability of exploitation in next 30 days
EPSS Percentile
48.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0067 is in the 83rd percentile among its peer group of 3,052 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (4)

redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatend of lifevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: realtime-kernel

Vendor Advisories (1)

redhatCVE-2015-7833Low

kernel: usbvision: crash on invalid USB device descriptors

Oct 8, 2015

References

lists.opensuse.org / opensuse-security-announce/2016-08/msg00000.html
Third Party Advisory
lists.opensuse.org / opensuse-security-announce/2016-08/msg00007.html
lists.opensuse.org / opensuse-security-announce/2016-08/msg00044.html
lists.opensuse.org / opensuse-security-announce/2016-08/msg00055.html
bugzilla.redhat.com / show_bug.cgi
Issue Tracking
debian.org / security/2015/dsa-3396
debian.org / security/2015/dsa-3426
os-s.net / advisories/DOS-KernelCrashesOnInvalidUSBDeviceDescriptors-UsbvisionDriver.pdf
Exploit
securityfocus.com / archive/1/536629
ExploitThird Party AdvisoryVDB Entry
securityfocus.com / bid/77030
securitytracker.com / id/1034452
ubuntu.com / usn/USN-2929-1
ubuntu.com / usn/USN-2929-2
ubuntu.com / usn/USN-2932-1
ubuntu.com / usn/USN-2947-1
ubuntu.com / usn/USN-2947-2
ubuntu.com / usn/USN-2947-3
ubuntu.com / usn/USN-2948-1
ubuntu.com / usn/USN-2948-2
ubuntu.com / usn/USN-2967-1
ubuntu.com / usn/USN-2967-2