First published: Sat Dec 03 2016(Updated: )
In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlueZ | =5.42 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9798 has been classified as a medium severity vulnerability due to its potential to cause system crashes.
To fix CVE-2016-9798, you should upgrade to a later version of BlueZ that has patched the use-after-free vulnerability.
CVE-2016-9798 specifically affects BlueZ version 5.42.
The impact of CVE-2016-9798 includes the potential crash of hcidump when processing a corrupted dump file.
Yes, CVE-2016-9798 is a well-documented vulnerability that has been publicly disclosed and reported.