« List of all CVEs

CVE-2017-1000250

Published: 9/12/2017 Last updated: 8/5/2024 Reserved: 9/12/2017

All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (2)

conf-bluetooth mindstorm

Products affected (1)

Product Vendor Version
n/a n/a < 6.2.9200.25273

References (16)