Lucene search

K
osvGoogleOSV:USN-5155-1
HistoryNov 23, 2021 - 7:04 p.m.

bluez vulnerabilities

2021-11-2319:04:05
Google
osv.dev
5

7.2 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

61.8%

It was discovered that BlueZ incorrectly handled the Discoverable status
when a device is powered down. This could result in devices being powered
up discoverable, contrary to expectations. This issue only affected Ubuntu
20.04 LTS, Ubuntu 21.04, and Ubuntu 21.10. (CVE-2021-3658)

It was discovered that BlueZ incorrectly handled certain memory operations.
A remote attacker could possibly use this issue to cause BlueZ to consume
resources, leading to a denial of service. (CVE-2021-41229)

It was discovered that the BlueZ gatt server incorrectly handled
disconnects. A remote attacker could possibly use this issue to cause
BlueZ to crash, leading to a denial of service. (CVE-2021-43400)