CVE-2017-15868Improper Input Validation in Kernel

Severity
7.8HIGHNVD
EPSS
0.0%
top 93.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 5
Latest updateMay 13

Description

The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, which allows local users to gain privileges via a crafted application.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

NVDlinux/linux_kernel3.23.2.97+3
Debianlinux/linux_kernel< 4.0.2-1+3
Ubuntulinux/linux_kernel< 3.13.0-142.191
debiandebian/linux< linux 4.0.2-1 (bookworm)

Also affects: Debian Linux 8.0, Ubuntu Linux 12.04, 14.04

Patches

🔴Vulnerability Details

3
GHSA
GHSA-6qcf-qpfw-q4v6: The bnep_add_connection function in net/bluetooth/bnep/core2022-05-13
OSV
linux vulnerabilities2018-02-23
OSV
CVE-2017-15868: The bnep_add_connection function in net/bluetooth/bnep/core2017-12-05

📋Vendor Advisories

4
Ubuntu
Linux kernel vulnerabilities2018-02-23
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities2018-02-23
Debian
CVE-2017-15868: linux - The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kerne...2017
Red Hat
kernel: bnep_add_connection does not check if l2cap socket is available allowing privilege escalation2014-12-19

💬Community

1
Bugzilla
CVE-2017-15868 kernel: bnep_add_connection does not check if l2cap socket is available allowing privilege escalation2017-12-06