CVE-2016-2384: Linux Kernel
Medium severity, CVSS 4.6. EPSS: 3.7% chance of exploitation in the next 30 days.
Double free vulnerability in the snd_usbmidi_create function in sound/usb/midi.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (panic) or possibly have unspecified other impact via vectors involving an invalid USB descriptor.
Affected products
- Linux Linux Kernel: up to and including 4.4.8
- Novell Suse Linux Enterprise Real Time Extension: version 12 only
Published 2016-04-27. Last modified 2026-06-17.