First published: Sat Dec 03 2016(Updated: )
In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlueZ | =5.42 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9797 is classified as a moderate severity vulnerability due to the potential for application crashes.
To fix CVE-2016-9797, update BlueZ to version 5.43 or later.
CVE-2016-9797 affects BlueZ version 5.42.
CVE-2016-9797 is a buffer over-read vulnerability.
CVE-2016-9797 can be exploited by processing a corrupted dump file, leading to a crash of the hcidump utility.