Show filters
530 Total Results
Displaying 331-340 of 530
Sort by:
Attacker Value
Unknown
CVE-2017-5591
Disclosure Date: February 09, 2017 (last updated November 26, 2024)
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for SleekXMPP up to 1.3.1 and Slixmpp all versions up to 1.2.3, as bundled in poezio (0.8 - 0.10) and other products.
0
Attacker Value
Unknown
CVE-2016-9917
Disclosure Date: December 08, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
0
Attacker Value
Unknown
CVE-2016-9918
Disclosure Date: December 08, 2016 (last updated November 25, 2024)
In BlueZ 5.42, an out-of-bounds read was identified in "packet_hexdump" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown
CVE-2016-9803
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read correct element from 'ev_le_meta_str' array) is overflowed.
0
Attacker Value
Unknown
CVE-2016-9799
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown
CVE-2016-9804
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "frm->ptr" parameter. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
0
Attacker Value
Unknown
CVE-2016-9800
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter.
0
Attacker Value
Unknown
CVE-2016-9798
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
0
Attacker Value
Unknown
CVE-2016-9802
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
0
Attacker Value
Unknown
CVE-2016-9801
Disclosure Date: December 03, 2016 (last updated November 25, 2024)
In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.
0