Loading
Generated remediation guidance and an executive summary. No account required.
The default configuration of udev on Linux does not warn the user before enabling additional Human Interface Device (HID) functionality over USB, which allows user-assisted attackers to execute arbitrary programs via crafted USB data, as demonstrated by keyboard and mouse data sent by malware on a smartphone that the user connected to the computer.
Use Udev Project vendor hub and Udev product page to widen CVE-2011-0640 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2009-1185, CVE-2010-4176 and CVE-2009-1186 for nearby disclosures in the same product family.