CVE-2022-39177
02.09.2022, 04:15
BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be processed in profiles/audio/avdtp.c.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bluez | bluez | 𝑥 < 5.59 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 20.04 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| bluez |
| ||||||||||||||||
| bluez-deprecated |
| ||||||||||||||||
| bluez-devel |
| ||||||||||||||||
| libbluetooth3 |
|
References