First published: Wed Jan 12 2022(Updated: )
A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files causing an application to halt or crash, leading to a denial of service.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
BlueZ BlueZ | <5.63 | |
Fedoraproject Fedora | =35 | |
Debian Debian Linux | =10.0 | |
redhat/bluez | <5.63 | 5.63 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0204 is a heap overflow vulnerability found in BlueZ versions prior to 5.63.
CVE-2022-0204 has a severity rating of 8.8 (high).
An attacker with local network access could exploit CVE-2022-0204 by passing specially crafted files, causing an application to halt or crash.
BlueZ versions prior to 5.63 are affected by CVE-2022-0204.
To fix CVE-2022-0204, upgrade to BlueZ version 5.63 or later.