Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-1000250

Опубликовано: 12 сент. 2017
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 3.3
CVSS3: 6.5

Описание

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.

РелизСтатусПримечание
devel

released

5.46-0ubuntu3
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [4.101-0ubuntu13.3]]
esm-infra-legacy/xenial

released

5.37-0ubuntu5.1
esm-infra/xenial

released

5.37-0ubuntu5.1
precise/esm

DNE

trusty

released

4.101-0ubuntu13.3
trusty/esm

DNE

trusty was released [4.101-0ubuntu13.3]
upstream

needs-triage

vivid/ubuntu-core

DNE

xenial

released

5.37-0ubuntu5.1

Показывать по

EPSS

Процентиль: 94%
0.07774
Низкий

3.3 Low

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
почти 9 лет назад

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.

CVSS3: 6.5
nvd
почти 9 лет назад

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.

CVSS3: 6.5
debian
почти 9 лет назад

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerabl ...

CVSS3: 6.5
github
около 4 лет назад

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.

oracle-oval
почти 9 лет назад

ELSA-2017-2685: bluez security update (MODERATE)

EPSS

Процентиль: 94%
0.07774
Низкий

3.3 Low

CVSS2

6.5 Medium

CVSS3