Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Mageia 8 MGASA-2022-0058 Critical: BlueZ Memory Issue DoS

mageia
Calendar Grey February 12, 2022
Dist Mageia Esm H88
The discovery of a vulnerability in BlueZ by Ziming Zhang leads to a critical Mageia security patch aimed at mitigating risks of unauthorized remote code execution.
Ziming Zhang discovered that BlueZ incorrectly handled memory write operations in its gatt server

Summary

Ziming Zhang discovered that BlueZ incorrectly handled memory write operations in its gatt server. A remote attacker could possibly use this to cause BlueZ to crash leading to a denial of service, or potentially remotely execute code. (CVE-2022-0204)

References

- https://bugs.mageia.org/show_bug.cgi?id=30015

-

- https://www.cve.org/CVERecord?id=CVE-2022-0204

Resolution

SRPMS

- 8/core/bluez-5.55-3.4.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 12 Feb 2022
URL: https://advisories.mageia.org/MGASA-2022-0058.html
Type: security
CVE: CVE-2022-0204

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here