[ubuntu/focal-security] bluez 5.53-0ubuntu3.5 (Accepted)

Ray Veldkamp ray.veldkamp at canonical.com
Tue Feb 8 03:20:59 UTC 2022


bluez (5.53-0ubuntu3.5) focal-security; urgency=medium
  
  * SECURITY UPDATE: Integer overflow in gatt server protocol could lead to
    a heap overflow, resulting in denial of service or potential code
    execution.
    - debian/patches/CVE-2022-0204.patch: add length and offset validation in
      write_cb function in src/shared/gatt-server.c.
    - CVE-2022-0204

Date: 2022-02-03 12:42:11.038537+00:00
Changed-By: Ray Veldkamp <ray.veldkamp at canonical.com>
Maintainer: Bluetooth <ubuntu-bluetooth at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/bluez/5.53-0ubuntu3.5
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list