Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability

BugsAlert Home > Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability
 
 

LinuxSecurity.com: An input validation flaw was found in the Bluetooth Session Description Protocol (SDP) packet parser used in the Bluez bluetooth utilities. A bluetooth device with an already-trusted relationship, or a local user registering a service record via a UNIX socket or D-Bus interface, could cause a crash and potentially execute arbitrary code with the privileges of the hcid daemon (CVE-2008-2374). The updated packages have been patched to correct this issue.




Original Source: http://www.linuxsecurity.com/content/view/139786?rdf

Learn more about Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability
 
Tags: mandriva updated bluez bluez-utils packages fix sdp
 packet parsing vulnerability

Related Items

      Ubuntu update for dovecot

      FrSIRT - MODx Remote File Inclusion and Cross Site Scripting Vulnerabilities

      Bugtraq: [SECURITY] [DSA 1661-1] New OpenOffice.org packages fix several vulnerabilities

      CVE-2008-2771 (node_hierarchy_module, Drupal)

      CVE-2007-6664 (WebPortal CMS)

      FrSIRT - Debian Security Update Fixes Tomcat Cross Site Scripting Vulnerability

      CVE-2008-0576 (Project Issue Tracking module)

 

Pixel