| Severity : |
Low
|
| Published : |
2011-07-28
|
| Modified : |
2012-03-19
|
| Base Score : |
1.9
|
| Details : |
The bluetooth subsystem in the Linux kernel before 3.0-rc4 does not properly initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel memory via a crafted getsockopt system call, related to (1) the l2cap_sock_getsockopt_old function in net/bluetooth/l2cap_sock.c and (2) the rfcomm_sock_getsockopt_old function in net/bluetooth/rfcomm/sock.c.
|
| Product/Version : |
Pro 4.x
CGE 4.x
Mobilinux 4.x
Professional PRO 5.0
Professional PRO 5.0
CGE 5.x
Mobilinux 5.x
Consumer Mobilinux 5.0.24
|
|
CVE Vulnerabilities List CVE-2011