First published: Thu Mar 23 2006(Updated: )
Buffer overflow in the Motorola PEBL U6 08.83.76R, and possibly other Motorola P2K-based phones, allows remote attackers to cause a denial of service (device shutdown), and possibly execute arbitrary code, via a long OBEX setpath to the OBEX File Transfer (aka FTP) service on Bluetooth channel 9.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Motorola PEBL U6 | =u6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1366 has a high severity due to the potential for remote code execution and device shutdown.
To mitigate CVE-2006-1366, it is recommended to disable Bluetooth or avoid connections to untrusted devices.
CVE-2006-1366 primarily affects the Motorola PEBL U6 and possibly other Motorola P2K-based phones.
CVE-2006-1366 can cause a denial of service, leading to unexpected shutdowns or potential remote code execution.
Yes, CVE-2006-1366 can be exploited remotely via a long OBEX setpath command sent to the Bluetooth service.