First published: Thu Dec 08 2016(Updated: )
In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlueZ | =5.42 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9917 has been classified as a moderate severity vulnerability due to its potential to cause application crashes.
To fix CVE-2016-9917, upgrade to a patched version of BlueZ beyond 5.42.
CVE-2016-9917 specifically affects BlueZ version 5.42.
The impact of CVE-2016-9917 is that it can lead to a buffer overflow causing the hcidump tool to crash.
CVE-2016-9917 requires a corrupted dump file to be processed, so it is less likely to be exploited remotely without user interaction.