CVE-2015-8956
published 2016-10-10CVE-2015-8956: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a…
PriorityP422medium6.1CVSS 3.0
AVLACLPRLUINSUCHINAL
EPSS
0.22%
13.0th percentile
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.2.1-1 (bookworm) | linux 4.2.1-1 (bookworm) |
| android | <= 7.0 | — | |
| android | — | — | |
| linux | linux_kernel | <= 4.1.33 | — |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
CVSS provenance
nvdv3.06.1MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:P/I:N/A:P
osv6.1MEDIUM
vendor_debian6.1MEDIUM
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-78pp-hr66-mmq8: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock
ghsa_unreviewed·2022-05-14
CVE-2015-8956 [MEDIUM] CWE-476 GHSA-78pp-hr66-mmq8: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
OSV
CVE-2015-8956: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock
osv·2016-10-10·CVSS 6.1
CVE-2015-8956 [MEDIUM] CVE-2015-8956: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
Android
CVE-2015-8956: Android Security Bulletin 2016-10-01
CVE: CVE-2015-8956
Severity: MEDIUM
References: A-30149612*
vendor_android·2016-10-01·CVSS 6.1
CVE-2015-8956 [MEDIUM] CVE-2015-8956: Android Security Bulletin 2016-10-01
CVE: CVE-2015-8956
Severity: MEDIUM
References: A-30149612*
Android Security Bulletin 2016-10-01
CVE: CVE-2015-8956
Severity: MEDIUM
References: A-30149612*
Red Hat
kernel: NULL dereference in RFCOMM bind callback
vendor_redhat·2015-05-14·CVSS 6.1
CVE-2015-8956 [MEDIUM] CWE-476 kernel: NULL dereference in RFCOMM bind callback
kernel: NULL dereference in RFCOMM bind callback
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
Statement: This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6. This has been rated as having Low security impact and is not currently planned to be addressed in future
Debian
CVE-2015-8956: linux - The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel...
vendor_debian·2015·CVSS 6.1
CVE-2015-8956 [MEDIUM] CVE-2015-8956: linux - The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel...
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket.
Scope: local
bookworm: resolved (fixed in 4.2.1-1)
bullseye: resolved (fixed in 4.2.1-1)
forky: resolved (fixed in 4.2.1-1)
sid: resolved (fixed in 4.2.1-1)
trixie: resolved (fixed in 4.2.1-1)
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=951b6a0717db97ce420547222647bcc40bf1eacdhttp://rhn.redhat.com/errata/RHSA-2016-2574.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2584.htmlhttp://source.android.com/security/bulletin/2016-10-01.htmlhttp://www.securityfocus.com/bid/93326https://github.com/torvalds/linux/commit/951b6a0717db97ce420547222647bcc40bf1eacdhttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=951b6a0717db97ce420547222647bcc40bf1eacdhttp://rhn.redhat.com/errata/RHSA-2016-2574.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2584.htmlhttp://source.android.com/security/bulletin/2016-10-01.htmlhttp://www.securityfocus.com/bid/93326https://github.com/torvalds/linux/commit/951b6a0717db97ce420547222647bcc40bf1eacd
2016-10-10
Published