CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96619  CVE-2016-9799  Candidate  In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.  Assigned (20161203)  None (candidate not yet proposed)    View
96620  CVE-2016-9800  Candidate  In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter.  Assigned (20161203)  None (candidate not yet proposed)    View
96621  CVE-2016-9801  Candidate  In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.  Assigned (20161203)  None (candidate not yet proposed)    View
96622  CVE-2016-9802  Candidate  In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.  Assigned (20161203)  None (candidate not yet proposed)    View
96623  CVE-2016-9803  Candidate  In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because "subevent" (which is used to read correct element from "ev_le_meta_str" array) is overflowed.  Assigned (20161203)  None (candidate not yet proposed)    View

Page 19288 of 20943, showing 5 records out of 104715 total, starting on record 96436, ending on 96440

Actions