oss-sec mailing list archives

Re: CVE-2023-2002: Linux Bluetooth: Unauthorized management command execution


From: Jakub Wilk <jwilk () jwilk net>
Date: Mon, 17 Apr 2023 08:40:47 +0200

* Steffen Nurpmeso <steffen () sdaoden eu>, 2023-04-16 22:57:
have you verified that they do not use isatty(3)

I'm pretty sure they do. But isatty(3) is implemented using the TCGETS ioctl, so that doesn't help.

--
Jakub Wilk


Current thread: