Buffer overflow in BlueZ 5.41 and earlier allows an attacker to execute arbitrary code via the parse_line function used in some userland utilities.
{ "binaries": [ { "binary_name": "bluetooth", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-alsa", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-audio", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-compat", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-cups", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-gstreamer", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-pcmcia-support", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "bluez-utils", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "libbluetooth-dev", "binary_version": "4.101-0ubuntu13.3" }, { "binary_name": "libbluetooth3", "binary_version": "4.101-0ubuntu13.3" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "bluetooth", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "bluez", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "bluez-cups", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "bluez-hcidump", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "bluez-obexd", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "bluez-tests", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "libbluetooth-dev", "binary_version": "5.37-0ubuntu5.3" }, { "binary_name": "libbluetooth3", "binary_version": "5.37-0ubuntu5.3" } ], "availability": "No subscription required" }