PT-2016-7826 · Bluez+3 · Bluez+3

Op7Ic

·

Publicado

2016-10-30

·

Atualizado

2026-05-05

·

CVE-2016-9798

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions BlueZ version 5.42
Description A use-after-free issue was identified in the conf opt function in the tools/parser/l2cap.c source file. This issue can be triggered by processing a corrupted dump file, resulting in an hcidump crash.
Recommendations For BlueZ version 5.42, as a temporary workaround, consider disabling the conf opt function until a patch is available. Restrict access to corrupted dump files to minimize the risk of exploitation.

Exploit

Correção

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-2219
CVE-2016-9798
OPENSUSE-SU-2019:1476-1
OPENSUSE-SU-2019:2585-1
OPENSUSE-SU-2019:2588-1
OPENSUSE-SU-2019_1476-1
OPENSUSE-SU-2019_2585-1
OPENSUSE-SU-2019_2588-1
OPENSUSE-SU-2024:12348-1
SUSE-SU-2019:1339-1
SUSE-SU-2019:1353-1
SUSE-SU-2019:1353-2
SUSE-SU-2019:2915-1
SUSE-SU-2019:3046-1
SUSE-SU-2019_2915-1
SUSE-SU-2019_3046-1

Produtos afetados

Alt Linux
Bluez
Debian
Suse