Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-9804
HistoryDec 03, 2016 - 6:59 a.m.

Buffer overflow

2016-12-0306:59:00
PRIOn knowledge base
www.prio-n.com
6

7.3 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

57.8%

In BlueZ 5.42, a buffer overflow was observed in “commands_dump” function in “tools/parser/csr.c” source file. The issue exists because “commands” array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame “frm->ptr” parameter. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.

CPENameOperatorVersion
bluezeq5.42

7.3 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

57.8%