Skip to main content

Vendor archive

bluez CVEs

Beta · best-effort

39 CVEs tagged to vendor bluez2 Critical, 14 High, 20 Medium, 3 Low, 0 Unrated.

CVE-2024-8805

Published Nov 22, 2024

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51596

Published May 3, 2024

BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on a…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51594

Published May 3, 2024

BlueZ OBEX Library Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected inst…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-51592

Published May 3, 2024

BlueZ Audio Profile AVRCP parse_media_folder Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive in…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-51589

Published May 3, 2024

BlueZ Audio Profile AVRCP parse_media_element Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive i…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-51580

Published May 3, 2024

BlueZ Audio Profile AVRCP avrcp_parse_attribute_list Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sens…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-50230

Published May 3, 2024

BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on a…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-50229

Published May 3, 2024

BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on a…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-44431

Published May 3, 2024

BlueZ Audio Profile AVRCP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code via Bluet…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-27349

Published May 3, 2024

BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code vi…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3637

Published Oct 21, 2022

A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function jlink_init of the file monitor/jlink.c of the component BlueZ…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-3563

Published Oct 17, 2022

A vulnerability classified as problematic has been found in Linux Kernel. Affected is the function read_50_controller_cap_complete of the file tools/mgmt-tester.c of the component…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-3658

Published Mar 2, 2022

bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up. If a device is powered down while discoverabl…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-41229

Published Nov 12, 2021

BlueZ is a Bluetooth protocol stack for Linux. In affected versions a vulnerability exists in sdp_cstate_alloc_buf which allocates memory which will always be hung in the singly l…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-43400

Published Nov 4, 2021

An issue was discovered in gatt-database.c in BlueZ 5.61. A use-after-free can occur when a client disconnects during D-Bus processing of a WriteValue call.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-3588

Published Jun 10, 2021

The cli_feat_read_cb() function in src/gatt-database.c does not perform bounds checks on the 'offset' variable before using it as an index into an array for reading.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-24490

Published Feb 2, 2021

Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access. This affects all Linux kernel versions that su…

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2020-12352

Published Nov 23, 2020

Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 39 CVEsPage 1 of 2