Unrated severityNVD Advisory· Published Jan 25, 2011· Updated Jun 16, 2026
CVE-2011-0640
CVE-2011-0640
Description
The default configuration of udev on Linux does not warn the user before enabling additional Human Interface Device (HID) functionality over USB, which allows user-assisted attackers to execute arbitrary programs via crafted USB data, as demonstrated by keyboard and mouse data sent by malware on a smartphone that the user connected to the computer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11- cpe:2.3:a:udev_project:udev:-:*:*:*:*:*:*:*
- osv-coords10 versionspkg:apk/chainguard/py3.10-pyudevpkg:apk/chainguard/py3.11-pyudevpkg:apk/chainguard/py3.12-pyudevpkg:apk/chainguard/py3.13-pyudevpkg:apk/chainguard/py3-supported-pyudevpkg:apk/wolfi/py3.10-pyudevpkg:apk/wolfi/py3.11-pyudevpkg:apk/wolfi/py3.12-pyudevpkg:apk/wolfi/py3.13-pyudevpkg:apk/wolfi/py3-supported-pyudev
< 0.24.4-r0+ 9 more
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
- (no CPE)range: < 0.24.4-r0
Patches
Vulnerability mechanics
References
3- news.cnet.com/8301-27080_3-20028919-245.htmlnvdBroken Link
- www.blackhat.com/html/bh-dc-11/bh-dc-11-briefings.htmlnvdNot Applicable
- www.cs.gmu.edu/~astavrou/publications.htmlnvdBroken Link
News mentions
0No linked articles in our index yet.