gregkh/usbview

gregkh/usbview

Releases16
Frequency1 year 3 weeks
Last Release
Stars267
usb viewer for Linux

CVE History

CVEPublishedCVSS v3CVSS v2
7.8 HIGH7.2 HIGH

USBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary code as root because certain Polkit settings (e.g., allow_any=yes) for pkexec disable the authentication requirement. Code execution can, for example, use the --gtk-module option. This affects Ubuntu, Debian, and Gentoo.