CVE-2022-39176
02.09.2022, 04:15
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.Enginsight
| Vendor | Product | Version |
|---|---|---|
| bluez | bluez | 𝑥 < 5.59 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 20.04 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References