NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22459 | CVE-2016-9804 | In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "frm->ptr" parameter. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
22458 | CVE-2016-9803 | In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because "subevent" (which is used to read correct element from "ev_le_meta_str" array) is overflowed. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
22457 | CVE-2016-9802 | In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
22456 | CVE-2016-9801 | In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
22455 | CVE-2016-9800 | In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 1016 of 17672, showing 5 records out of 88360 total, starting on record 5076, ending on 5080