7.2
CVSSv2

CVE-2005-0750

Published: 27/03/2005 Updated: 11/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 740
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 up to and including 2.4.30-rc1 and 2.6 up to and including 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.

Vulnerable Product Search on Vulmon Subscribe to Product

conectiva linux 10.0

linux linux kernel 2.4.15

linux linux kernel 2.4.16

linux linux kernel 2.4.23

linux linux kernel 2.4.24

linux linux kernel 2.4.7

linux linux kernel 2.4.8

linux linux kernel 2.4.9

linux linux kernel 2.6.4

linux linux kernel 2.6.5

redhat enterprise linux 4.0

redhat enterprise linux desktop 4.0

suse suse linux 1.0

suse suse linux 9.3

linux linux kernel 2.4.10

linux linux kernel 2.4.17

linux linux kernel 2.4.18

linux linux kernel 2.4.25

linux linux kernel 2.4.26

linux linux kernel 2.6.0

linux linux kernel 2.6.1

linux linux kernel 2.6.6

linux linux kernel 2.6.7

redhat fedora core core_1.0

redhat fedora core core_2.0

ubuntu ubuntu linux 4.1

linux linux kernel 2.4.13

linux linux kernel 2.4.14

linux linux kernel 2.4.21

linux linux kernel 2.4.22

linux linux kernel 2.4.29

linux linux kernel 2.4.6

linux linux kernel 2.6.2

linux linux kernel 2.6.3

redhat linux 7.3

redhat linux 9.0

linux linux kernel 2.4.11

linux linux kernel 2.4.12

linux linux kernel 2.4.19

linux linux kernel 2.4.20

linux linux kernel 2.4.27

linux linux kernel 2.4.28

linux linux kernel 2.6.10

linux linux kernel 2.6.11

linux linux kernel 2.6.8

linux linux kernel 2.6.9

redhat fedora core core_3.0

Vendor Advisories

Mathieu Lafon discovered an information leak in the ext2 file system driver When a new directory was created, the ext2 block written to disk was not initialized, so that previous memory contents (which could contain sensitive data like passwords) became visible on the raw device This is particularly important if the target device is removable and ...
Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages are now available as part of ongoing support andmaintenance of Red Hat Enterprise Linux version 21 This is the seventhregular updateThis security advisory has been rated as having important security i ...
Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages are now available as part of ongoing support andmaintenance of Red Hat Enterprise Linux version 21 for 64-bitarchitectures This is the seventh regular updateThis security advisory has been rated as ha ...
Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in the Red HatEnterprise Linux 3 kernel are now availableThis security advisory has been rated as having important security impactby the Red Hat Security Response TeamT ...
Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues are now availablefor Red Hat Enterprise Linux 4This update has been rated as having important security impact by the RedHat Security Response Team[Updated 9 August 2005 ...

Exploits

/* Due to many responses i've improved the exploit to cover more systems! ONG_BAK v09 [october 24th 05] """""""""""""""""""""""""""""""""""" o universal "shellcode" added o try to use all possible memory regions o bugfixes qobaiashi@voyager:~/w00nf/kernelsploit> /ong_bak -100222 -|-bluez local root exploit v09 -by qobaiashi- | |- ...
/* EDB Note: Update can be found here ~ wwwexploit-dbcom/exploits/25290/ source: wwwsecurityfocuscom/bid/12911/info A local signed-buffer-index vulnerability affects the Linux kernel because it fails to securely handle signed values when validating memory indexes A local attacker may leverage this issue to gain escalated ...
/* EDB Note: Update can be found here ~ wwwexploit-dbcom/exploits/926/ source: wwwsecurityfocuscom/bid/12911/info A local signed-buffer-index vulnerability affects the Linux kernel because it fails to securely handle signed values when validating memory indexes A local attacker may leverage this issue to gain escalated priv ...
/* EDB Note: Update can be found here ~ wwwexploit-dbcom/exploits/926/ source: wwwsecurityfocuscom/bid/12911/info A local signed-buffer-index vulnerability affects the Linux kernel because it fails to securely handle signed values when validating memory indexes A local attacker may leverage this issue to gain escalated privil ...