Microsoft Windows Bluetooth Stack Vulnerability
RISK: High Risk
TYPE: Operating Systems - Windows OS
A remote code execution vulnerability exists in the Windows Bluetooth 2.1 Stack due to the way an object in memory is accessed when it has not been correctly initialized or has been deleted. An attacker could exploit the vulnerability by constructing a series of specially crafted Bluetooth packets and sending them to the target machine. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Impact
- Remote Code Execution
System / Technologies affected
- Windows Vista
- Windows 7
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://www.microsoft.com/technet/security/Bulletin/MS11-053.mspx
Vulnerability Identifier
Source
Related Link
Share with