bluez: command execution
Package(s): | bluez-utils | CVE #(s): | CAN-2005-2547 | ||||||||||||
Created: | August 17, 2005 | Updated: | August 26, 2005 | ||||||||||||
Description: | The bluez-utils package (through version 2.19) fails to properly validate device names. As a result, pairing the system with a device containing a maliciously-crafted name could result in the execution of arbitrary commands as root. | ||||||||||||||
Alerts: |
|