CVE-2019-8921
Summary
| CVE | CVE-2019-8921 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-29 08:15:00 UTC |
| Updated | 2022-11-07 17:26:00 UTC |
| Description | An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by the SDP implementation. By crafting a malicious CSTATE, it is possible to trick the server into returning more bytes than the buffer actually holds, resulting in leaking arbitrary heap data. The root cause can be found in the function service_attr_req of sdpd-request.c. The server does not check whether the CSTATE data is the same in consecutive requests, and instead simply trusts that it is the same. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| SSD Advisory – Linux BlueZ Information Leak and Heap Overflow - SSD Secure Disclosure |
MISC |
ssd-disclosure.com |
|
| [SECURITY] [DLA 3157-1] bluez security update |
MLIST |
lists.debian.org |
|
| November 2021 BlueZ Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 178914 Debian Security Update for bluez (DLA 2827-1)
- 181160 Debian Security Update for bluez (DLA 3157-1)
- 356420 Amazon Linux Security Advisory for bluez : ALAS2-2023-2309
- 671592 EulerOS Security Update for bluez (EulerOS-SA-2022-1524)
- 671653 EulerOS Security Update for bluez (EulerOS-SA-2022-1707)
- 752696 SUSE Enterprise Linux Security Update for bluez (SUSE-SU-2022:3691-1)
- 752697 SUSE Enterprise Linux Security Update for bluez (SUSE-SU-2022:3687-1)
- 752714 SUSE Enterprise Linux Security Update for bluez (SUSE-SU-2022:3718-1)