PT-2006-4041 · Toshiba · Toshiba Bluetooth Stack
Steven M. Christey
·
Published
2006-06-22
·
Updated
2018-10-18
·
CVE-2006-3146
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Toshiba Bluetooth Stack versions 4.00.29 and earlier
Description
The issue allows remote attackers to cause a denial of service, resulting in a system reboot, by sending a L2CAP echo request that triggers an out-of-bounds memory access. This is similar to the "Ping of Death" and has been demonstrated by BlueSmack.
Recommendations
For Toshiba Bluetooth Stack versions 4.00.29 and earlier, update to a version later than 4.00.29 to resolve the issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Toshiba Bluetooth Stack