CVE-2016-9803: Buffer Overflow
Published Dec 3, 2016
·Updated
In BlueZ 5.42, an out-of-bounds read was observed in "lemetaevdump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read correct element from 'evlemetastr' array) is overflowed.
Affected Software
1 affected component
bluez bluez=5.42
Event History
Dec 3, 2016
CVE Published
via MITRE·06:28 AM
Data Sourced
via MITRE·06:28 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-9803?
CVE-2016-9803 is classified as a high severity vulnerability due to the potential for an out-of-bounds read.
2
How do I fix CVE-2016-9803?
To fix CVE-2016-9803, you should upgrade BlueZ to a version newer than 5.42 that addresses this vulnerability.
3
What software is affected by CVE-2016-9803?
CVE-2016-9803 specifically affects BlueZ version 5.42.
4
Can CVE-2016-9803 lead to data leaks?
Yes, CVE-2016-9803 could potentially lead to data leaks due to the out-of-bounds read.
5
Is there a known exploit for CVE-2016-9803?
As of now, there are no publicly known exploits specifically targeting CVE-2016-9803.