ZeroHour

CVE-2016-9803

PoC
CVSS 3.0
5.3 medium
EPSS
2%p84
Published
()
Modified
Description

In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read correct element from 'ev_le_meta_str' array) is overflowed.

Vendors
bluez
Products
bluez
Weakness
CWE-119, CWE-125
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.