cve/2024/CVE-2024-11857.md
2025-09-29 21:09:30 +02:00

929 B

CVE-2024-11857

Description

Bluetooth HCI Adaptor from Realtek has a Link Following vulnerability. Local attackers with regular privileges can create a symbolic link with the same name as a specific file, causing the product to delete arbitrary files pointed to by the link. Subsequently, attackers can leverage arbitrary file deletion to privilege escalation.

POC

Reference

No PoCs from references.

Github