Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| bluez | unfixed | package | ||
| bluez | no-dsa | trixie | package |
Примечания
https://github.com/bluez/bluez/security/advisories/GHSA-m2vx-pw5f-rc8v
Связанные уязвимости
CVSS3: 7.1
redhat
13 дней назад
A double stack-based buffer overflow was found in the BlueZ AVRCP controller implementation. A nearby BR/EDR peripheral can send a crafted AVRCP player-settings response that supplies an attacker-controlled attribute count, causing avrcp_list_player_attributes_rsp() and avrcp_get_current_player_value() in profiles/audio/avrcp.c to write attacker-controlled data past fixed-size stack buffers, potentially leading to a crash or code execution in the bluetoothd daemon.