>> Microsoft Windows Bluetooth Remote Code Execution (MS08-030)
Title : Microsoft Windows Bluetooth Remote Code Execution (MS08-030) VUPEN ID : VUPEN/ADV-2008-1777 CVE ID : CVE-2008-1453 CWE ID : CWE-119
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-06-10
Technical Description
A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by an error in the Bluetooth Stack that does not properly handle a large number of specially crafted Service Discovery Protocol (SDP) packets, which could be exploited by attackers to crash an affected system or execute arbitrary code with elevated privileges.
Note: This vulnerability only affects systems with Bluetooth capability.