Show filters
530 Total Results
Displaying 331-340 of 530
Sort by:
Attacker Value
Unknown

CVE-2017-5591

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for SleekXMPP up to 1.3.1 and Slixmpp all versions up to 1.2.3, as bundled in poezio (0.8 - 0.10) and other products.
Attacker Value
Unknown

CVE-2016-9917

Disclosure Date: December 08, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
Attacker Value
Unknown

CVE-2016-9918

Disclosure Date: December 08, 2016 (last updated November 25, 2024)
In BlueZ 5.42, an out-of-bounds read was identified in "packet_hexdump" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown

CVE-2016-9803

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read correct element from 'ev_le_meta_str' array) is overflowed.
0
Attacker Value
Unknown

CVE-2016-9799

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown

CVE-2016-9804

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "frm->ptr" parameter. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
0
Attacker Value
Unknown

CVE-2016-9800

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter.
0
Attacker Value
Unknown

CVE-2016-9798

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
0
Attacker Value
Unknown

CVE-2016-9802

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown

CVE-2016-9801

Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.
0