Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:9413

Опубликовано: 17 мар. 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: bluez security update

The bluez packages contain the following utilities for use in Bluetooth applications: hcitool, hciattach, hciconfig, bluetoothd, l2ping, start scripts (Rocky Enterprise Software Foundation), and pcmcia configuration files.

Security Fix(es):

  • bluez: unauthorized HID device connections allows keystroke injection and arbitrary commands execution (CVE-2023-45866)

  • BlueZ: Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability (CVE-2023-27349)

  • bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability (CVE-2023-51596)

  • bluez: OBEX library out-of-bounds read information disclosure vulnerability (CVE-2023-51594)

  • bluez: audio profile avrcp parse_media_folder out-of-bounds read information disclosure vulnerability (CVE-2023-51592)

  • bluez: audio profile avrcp parse_media_element out-of-bounds read information disclosure vulnerability (CVE-2023-51589)

  • bluez: avrcp_parse_attribute_list out-of-bounds read information disclosure vulnerability (CVE-2023-51580)

  • bluez: AVRCP stack-based buffer overflow remote code execution vulnerability (CVE-2023-44431)

  • bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability (CVE-2023-50230)

  • bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability (CVE-2023-50229)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 9.5 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
bluezx86_642.el9bluez-5.72-2.el9.x86_64.rpm
bluez-libsi6862.el9bluez-libs-5.72-2.el9.i686.rpm
bluez-libsx86_642.el9bluez-libs-5.72-2.el9.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
около 1 года назад

ELSA-2024-9413: bluez security update (MODERATE)

rocky
4 месяца назад

Moderate: bluez security update

oracle-oval
7 месяцев назад

ELSA-2025-4043: bluez security update (MODERATE)

CVSS3: 8
ubuntu
больше 1 года назад

BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code via Bluetooth on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the target must connect to a malicious device. The specific flaw exists within the handling of the AVRCP protocol. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-19908.

CVSS3: 7.1
redhat
больше 1 года назад

BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code via Bluetooth on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the target must connect to a malicious device. The specific flaw exists within the handling of the AVRCP protocol. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-19908.