CVE-2015-0884: Medium severity toshiba bluetooth wireless device driver vulnerability
Unquoted Windows search path vulnerability in Toshiba Bluetooth Stack for Windows before 9.10.32(T) and Service Station before 2.2.14 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0884?
CVE-2015-0884 is classified as a local privilege escalation vulnerability.
How do I fix CVE-2015-0884?
To fix CVE-2015-0884, upgrade the Toshiba Bluetooth Stack to version 9.10.32(T) or later, and update the Toshiba Service Station to version 2.2.14 or later.
Who is affected by CVE-2015-0884?
CVE-2015-0884 affects local users of Toshiba Bluetooth Stack versions prior to 9.10.32(T) and Toshiba Service Station versions before 2.2.14.
What causes the vulnerability in CVE-2015-0884?
CVE-2015-0884 is caused by an unquoted Windows search path that allows local users to execute a Trojan horse application.
Is my version of Toshiba Bluetooth Stack vulnerable to CVE-2015-0884?
If you are using Toshiba Bluetooth Stack version 9.10.27(T) or earlier, you are vulnerable to CVE-2015-0884.