cve/2015/CVE-2015-8575.md
2024-06-18 02:51:15 +02:00

758 B

CVE-2015-8575

Description

The sco_sock_bind function in net/bluetooth/sco.c in the Linux kernel before 4.3.4 does not verify an address length, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism via a crafted application.

POC

Reference

Github

No PoCs found on GitHub currently.