Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15868

Опубликовано: 05 дек. 2017
Источник: debian

Описание

The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.0.2-1package

Примечания

  • Fixed by: https://git.kernel.org/linus/71bb99a02b32b4cc4265118e85f6035ca72923f0 (v3.19-rc3)

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 8 лет назад

The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.

CVSS3: 7
redhat
около 11 лет назад

The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.

CVSS3: 7.8
nvd
около 8 лет назад

The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.

suse-cvrf
около 8 лет назад

Security update for the Linux Kernel (Live Patch 23 for SLE 12 SP1)

suse-cvrf
около 8 лет назад

Security update for the Linux Kernel (Live Patch 29 for SLE 12)