« List of all CVEs

CVE-2022-39176

Published: 9/2/2022 Last updated: 11/4/2025 Reserved: 9/2/2022

BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (2)

conf-bluetooth mindstorm

Products affected (2)

Product Vendor Version
n/a n/a 23.01
n/a n/a < 4db3d750ac7e894278ef1cb1c53cc7d883060496

References (18)