Search CVE reports


Toggle filters

51 – 60 of 60 results


CVE-2016-9802

Negligible priority
Vulnerable

In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2016-9801

Negligible priority
Vulnerable

In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2016-9800

Negligible priority
Vulnerable

In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size...

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2016-9799

Negligible priority
Vulnerable

In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2016-9798

Negligible priority
Vulnerable

In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2016-9797

Negligible priority
Vulnerable

In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.

1 affected package

bluez

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2008-2374

Low priority
Ignored

src/sdp.c in bluez-libs 3.30 in BlueZ, and other bluez-libs before 3.34 and bluez-utils before 3.34 versions, does not validate string length fields in SDP packets, which allows remote SDP servers to cause a denial of service or...

3 affected packages

bluez, bluez-libs, bluez-utils

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez
bluez-libs
bluez-utils
Show less packages

CVE-2006-6899

Medium priority
Not affected

hidd in BlueZ (bluez-utils) before 2.25 allows remote attackers to obtain control of the (1) Mouse and (2) Keyboard Human Interface Device (HID) via a certain configuration of two HID (PSM) endpoints, operating as a server, aka HidAttack.

1 affected package

bluez-utils

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez-utils
Show less packages

CVE-2006-0670

Medium priority
Fixed

Buffer overflow in l2cap.c in hcidump 1.29 allows remote attackers to cause a denial of service (crash) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet.

1 affected package

bluez-hcidump

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez-hcidump
Show less packages

CVE-2005-2547

Medium priority
Not affected

security.c in hcid for BlueZ 2.16, 2.17, and 2.18 allows remote attackers to execute arbitrary commands via shell metacharacters in the Bluetooth device name when invoking the PIN helper.

1 affected package

bluez-utils

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bluez-utils
Show less packages