vulnerability
SUSE: CVE-2017-15868: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Dec 5, 2017 | Jan 4, 2018 | Feb 4, 2022 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Dec 5, 2017
Added
Jan 4, 2018
Modified
Feb 4, 2022
Description
The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.
Solution(s)
suse-upgrade-kernel-defaultsuse-upgrade-kernel-docssuse-upgrade-kernel-ec2suse-upgrade-kernel-ec2-develsuse-upgrade-kernel-ec2-extra
References
- SUSE-SUSE-SU-2018:0011-1
- SUSE-SUSE-SU-2018:0031-1
- SUSE-SUSE-SU-2018:0040-1
- SUSE-SUSE-SU-2018:0115-1
- SUSE-SUSE-SU-2018:0180-1
- SUSE-SUSE-SU-2018:0237-1
- SUSE-SUSE-SU-2018:0238-1
- SUSE-SUSE-SU-2018:0239-1
- SUSE-SUSE-SU-2018:0240-1
- SUSE-SUSE-SU-2018:0241-1
- SUSE-SUSE-SU-2018:0242-1
- SUSE-SUSE-SU-2018:0243-1
- SUSE-SUSE-SU-2018:0244-1
- SUSE-SUSE-SU-2018:0245-1
- SUSE-SUSE-SU-2018:0249-1
- SUSE-SUSE-SU-2018:0250-1
- SUSE-SUSE-SU-2018:0251-1
- SUSE-SUSE-SU-2018:0252-1
- SUSE-SUSE-SU-2018:0253-1
- SUSE-SUSE-SU-2018:0265-1
- SUSE-SUSE-SU-2018:0266-1
- SUSE-SUSE-SU-2018:0267-1
- SUSE-SUSE-SU-2018:0268-1
- SUSE-SUSE-SU-2018:0270-1
- SUSE-SUSE-SU-2018:0271-1
- SUSE-SUSE-SU-2018:0274-1
- SUSE-SUSE-SU-2018:0275-1
- SUSE-SUSE-SU-2018:0276-1
- UBUNTU-USN-3583-1
- UBUNTU-USN-3583-2
- DEBIAN-DSA-4082
- NVD-CVE-2017-15868

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.