aboutsummaryrefslogtreecommitdiffstats
path: root/README
diff options
context:
space:
mode:
authorRoss Burton <ross.burton@intel.com>2017-09-13 20:11:52 +0100
committerRichard Purdie <richard.purdie@linuxfoundation.org>2017-09-13 22:13:34 +0100
commit7351e0b260876b9bbc8660c2bb4173ab4c130f8b (patch)
tree3740581518d0d21433e4164ec27ec8471a8b4fb4 /README
parentf2ccf56778433ec16f44eecaa10a610a6630df50 (diff)
downloadopenembedded-core-contrib-7351e0b260876b9bbc8660c2bb4173ab4c130f8b.tar.gz
bluez5: fix out-of-bounds access in SDP server (CVE-2017-1000250)
All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests. Signed-off-by: Ross Burton <ross.burton@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'README')
0 files changed, 0 insertions, 0 deletions