vulnerability

SUSE: CVE-2016-9800: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Dec 3, 2016
Added
May 20, 2018
Modified
Oct 22, 2021

Description

In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter.

Solutions

suse-upgrade-bluezsuse-upgrade-bluez-auto-enable-devicessuse-upgrade-bluez-cupssuse-upgrade-bluez-develsuse-upgrade-bluez-devel-32bitsuse-upgrade-bluez-testsuse-upgrade-libbluetooth3suse-upgrade-libbluetooth3-32bit
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.