Описание
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 5.48-0ubuntu3.9 |
| devel | not-affected | 5.65-0ubuntu1 |
| esm-infra/bionic | released | 5.48-0ubuntu3.9 |
| esm-infra/focal | released | 5.53-0ubuntu3.6 |
| esm-infra/xenial | needed | |
| focal | released | 5.53-0ubuntu3.6 |
| jammy | not-affected | 5.64-0ubuntu1 |
| kinetic | not-affected | 5.65-0ubuntu1 |
| lunar | not-affected | 5.65-0ubuntu1 |
| mantic | not-affected | 5.65-0ubuntu1 |
Показывать по
EPSS
8.8 High
CVSS3
Связанные уязвимости
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.
BlueZ before 5.59 allows physically proximate attackers to obtain sens ...
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.
Уязвимость компонента profiles/audio/avrcp.c пакета программ BlueZ , позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
EPSS
8.8 High
CVSS3