Description
Buffer overflow in l2cap.c in hcidump 1.29 allows remote attackers to cause a denial of service (crash) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet.
Affected products
- BlueZ Project / hcidump1.29 – 1.29
References
- MAILING_LISThttp://marc.info/?l=full-disclosure&m=113924625825488&w=2
- VENDOR_ADVISORYhttp://www.mandriva.com/security/advisories?name=MDKSA-2006:041
- MISChttp://www.osvdb.org/23056
- VENDOR_ADVISORYhttp://secunia.com/advisories/18971
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/0479
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-990
- VENDOR_ADVISORYhttp://secunia.com/advisories/18741
- MISChttp://www.securityfocus.com/archive/1/424133/100/0/threaded
- VENDOR_ADVISORYhttp://www.ubuntu.com/usn/usn-256-1
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/24533
- MISChttp://securityreason.com/securityalert/465
- MISChttp://www.secuobs.com/news/05022006-bluetooth9.shtml#english
- VENDOR_ADVISORYhttp://secunia.com/advisories/19122