Description
The cli_feat_read_cb() function in src/gatt-database.c does not perform bounds checks on the 'offset' variable before using it as an index into an array for reading.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/src/gatt-database.c?id=6a50b6aeda78a88eafb177718109c256eec077a6
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-26896 | The cli_feat_read_cb() function in src/gatt-database.c does not perform bounds checks on the 'offset' variable before using it as an index into an array for reading. |
Ubuntu USN |
USN-4989-1 | BlueZ vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2024-09-16T23:37:02.790Z
Reserved: 2021-06-08T00:00:00.000Z
Link: CVE-2021-3588
No data.
Status : Modified
Published: 2021-06-10T03:15:07.477
Modified: 2024-11-21T06:21:54.823
Link: CVE-2021-3588
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN