The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted length value in a USB/IP packet.
Linux Kernel 6.x/5.15 LTS
DDoS
CVE-2016-3955
NVD
Refer to CVE-2016-3955 NVD advisory