Privilege Escalation via Negative Protocol Value in Linux Bluetooth Stack

Privilege Escalation via Negative Protocol Value in Linux Bluetooth Stack

CVE-2005-0750 · HIGH Severity

AV:L/AC:L/AU:N/C:C/I:C/A:C

The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.