[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2017:2685-01 -- Redhat bluez

ID: oval:org.secpod.oval:def:502134Date: (C)2017-09-22   (M)2023-12-20
Class: PATCHFamily: unix




The bluez packages contain the following utilities for use in Bluetooth applications: hcitool, hciattach, hciconfig, bluetoothd, l2ping, start scripts , and pcmcia configuration files. Security Fix: * An information-disclosure flaw was found in the bluetoothd implementation of the Service Discovery Protocol . A specially crafted Bluetooth device could, without prior pairing or user interaction, retrieve portions of the bluetoothd process memory, including potentially sensitive information such as Bluetooth encryption keys. Red Hat would like to thank Armis Labs for reporting this issue.

Platform:
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 6
Product:
bluez
Reference:
RHSA-2017:2685-01
CVE-2017-1000250
CVE    1
CVE-2017-1000250
CPE    3
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:6
cpe:/a:bluez:bluez

© SecPod Technologies