BlueZ records
39 published records for vendor bluez.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 10
- With a fix record
- 94.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer10
- CWE-125 Out-of-bounds Read5
- CWE-122 Heap-based Buffer Overflow3
- CWE-404 Improper Resource Shutdown or Release2
- CWE-416 Use After Free2
- CWE-863 Incorrect Authorization2
The weakness classes this vendor ships most often: where to look.
CWEAll records
39 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2008-2374No exploit | src/sdp.c in bluez-libs 3.30 in BlueZ, and other bluez-libs before 3.34 and bluez-utils before 3.34 versions, does not validate string lengtbluez · bluez-libs · CWE-1284 | Critical9.8 | — | 4.3% | Jul 7, 2008 |
36Monitor | CVE-2024-8805No exploit | BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerabilitybluez · bluez · CWE-284 | High8.8 | — | 2.0% | Nov 22, 2024 |
36Monitor | CVE-2022-0204No exploit | A heap overflow vulnerability was found in bluez in versions prior to 5.63.bluez · bluez · CWE-119 | High8.8 | — | 1.8% | Mar 10, 2022 |
36Monitor | CVE-2021-43400No exploit | An issue was discovered in gatt-database.c in BlueZ 5.61.bluez · bluez · CWE-416 | Critical9.1 | — | 1.7% | Nov 4, 2021 |
35Monitor | CVE-2020-27153No exploit | In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c.bluez · bluez · CWE-415 | High8.6 | — | 4.3% | Oct 14, 2020 |
35Monitor | CVE-2019-8922No exploit | A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48.bluez · bluez · CWE-787 | High8.8 | — | 1.5% | Nov 29, 2021 |
35Monitor | CVE-2022-39176No exploit | BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate parbluez · bluez | High8.8 | — | 0.7% | Sep 2, 2022 |
35Monitor | CVE-2022-39177No exploit | BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be procebluez · bluez | High8.8 | — | 0.7% | Sep 2, 2022 |
33Monitor | CVE-2023-50229No exploit | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerabilitybluez · bluez · CWE-122 | High8.0 | — | 2.3% | May 2, 2024 |
32Monitor | CVE-2023-44431No exploit | BlueZ Audio Profile AVRCP Stack-based Buffer Overflow Remote Code Execution Vulnerabilitybluez · bluez · CWE-121 | High8.0 | — | 1.6% | May 2, 2024 |
32Monitor | CVE-2023-50230No exploit | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerabilitybluez · bluez · CWE-122 | High8.0 | — | 1.5% | May 2, 2024 |
32Monitor | CVE-2023-27349No exploit | BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerabilitybluez · bluez · CWE-129 | High8.0 | — | 1.4% | May 2, 2024 |
31Monitor | CVE-2016-9917No exploit | In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file.bluez · bluez · CWE-119 | High7.5 | — | 3.6% | Dec 8, 2016 |
31Monitor | CVE-2016-7837No exploit | Buffer overflow in BlueZ 5.41 and earlier allows an attacker to execute arbitrary code via the parse_line function used in some userland utibluez · bluez · CWE-119 | High7.8 | — | 0.6% | Jun 9, 2017 |
28Monitor | CVE-2017-1000250Proof of concept | All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attacbluez · bluez · CWE-200 | Medium6.5 | — | 7.8% | Sep 12, 2017 |
28Monitor | CVE-2020-12352Proof of concept | Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.bluez · bluez · CWE-909 | Medium6.5 | — | 5.7% | Nov 23, 2020 |
28Monitor | CVE-2023-51596No exploit | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerabilitybluez · bluez · CWE-122 | High7.1 | — | 1.5% | May 2, 2024 |
28Monitor | CVE-2020-0556No exploit | Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of pribluez · bluez | High7.1 | — | 1.0% | Mar 12, 2020 |
27Monitor | CVE-2020-24490Proof of concept | Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access.bluez · bluez | Medium6.5 | — | 2.2% | Feb 2, 2021 |
26Monitor | CVE-2021-41229No exploit | Memory leak in BlueZbluez · bluez · CWE-400 | Medium6.5 | — | 1.2% | Nov 12, 2021 |
26Monitor | CVE-2019-8921No exploit | An issue was discovered in bluetoothd in BlueZ through 5.48.bluez · bluez · CWE-345 | Medium6.5 | — | 1.0% | Nov 29, 2021 |
26Monitor | CVE-2021-3658No exploit | bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up.bluez · bluez · CWE-863 | Medium6.5 | — | 0.8% | Mar 2, 2022 |
22Monitor | CVE-2016-9798No exploit | In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file.bluez · bluez · CWE-416 | Medium5.3 | — | 3.8% | Dec 3, 2016 |
22Monitor | CVE-2016-9797No exploit | In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file.bluez · bluez · CWE-119 | Medium5.3 | — | 3.7% | Dec 3, 2016 |
22Monitor | CVE-2016-9802No exploit | In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file.bluez · bluez · CWE-119 | Medium5.3 | — | 3.3% | Dec 3, 2016 |
- CVE-2008-237440Plan
src/sdp.c in bluez-libs 3.30 in BlueZ, and other bluez-libs before 3.34 and bluez-utils before 3.34 versions, does not validate string lengt
CriticalCVSS 9.8No exploitEPSS 4%bluez · bluez-libsJul 7, 2008
- CVE-2024-880536Monitor
BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 2%bluez · bluezNov 22, 2024
- CVE-2022-020436Monitor
A heap overflow vulnerability was found in bluez in versions prior to 5.63.
HighCVSS 8.8No exploitEPSS 2%bluez · bluezMar 10, 2022
- CVE-2021-4340036Monitor
An issue was discovered in gatt-database.c in BlueZ 5.61.
CriticalCVSS 9.1No exploitEPSS 2%bluez · bluezNov 4, 2021
- CVE-2020-2715335Monitor
In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c.
HighCVSS 8.6No exploitEPSS 4%bluez · bluezOct 14, 2020
- CVE-2019-892235Monitor
A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48.
HighCVSS 8.8No exploitEPSS 2%bluez · bluezNov 29, 2021
- CVE-2022-3917635Monitor
BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate par
HighCVSS 8.8No exploitEPSS 1%bluez · bluezSep 2, 2022
- CVE-2022-3917735Monitor
BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be proce
HighCVSS 8.8No exploitEPSS 1%bluez · bluezSep 2, 2022
- CVE-2023-5022933Monitor
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 8.0No exploitEPSS 2%bluez · bluezMay 2, 2024
- CVE-2023-4443132Monitor
BlueZ Audio Profile AVRCP Stack-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 8.0No exploitEPSS 2%bluez · bluezMay 2, 2024
- CVE-2023-5023032Monitor
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 8.0No exploitEPSS 1%bluez · bluezMay 2, 2024
- CVE-2023-2734932Monitor
BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability
HighCVSS 8.0No exploitEPSS 1%bluez · bluezMay 2, 2024
- CVE-2016-991731Monitor
In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file.
HighCVSS 7.5No exploitEPSS 4%bluez · bluezDec 8, 2016
- CVE-2016-783731Monitor
Buffer overflow in BlueZ 5.41 and earlier allows an attacker to execute arbitrary code via the parse_line function used in some userland uti
HighCVSS 7.8No exploitEPSS 1%bluez · bluezJun 9, 2017
- CVE-2017-100025028Monitor
All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attac
MediumCVSS 6.5Proof of conceptEPSS 8%bluez · bluezSep 12, 2017
- CVE-2020-1235228Monitor
Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
MediumCVSS 6.5Proof of conceptEPSS 6%bluez · bluezNov 23, 2020
- CVE-2023-5159628Monitor
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 7.1No exploitEPSS 2%bluez · bluezMay 2, 2024
- CVE-2020-055628Monitor
Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of pri
HighCVSS 7.1No exploitEPSS 1%bluez · bluezMar 12, 2020
- CVE-2020-2449027Monitor
Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access.
MediumCVSS 6.5Proof of conceptEPSS 2%bluez · bluezFeb 2, 2021
- CVE-2021-4122926Monitor
Memory leak in BlueZ
MediumCVSS 6.5No exploitEPSS 1%bluez · bluezNov 12, 2021
- CVE-2019-892126Monitor
An issue was discovered in bluetoothd in BlueZ through 5.48.
MediumCVSS 6.5No exploitEPSS 1%bluez · bluezNov 29, 2021
- CVE-2021-365826Monitor
bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up.
MediumCVSS 6.5No exploitEPSS 1%bluez · bluezMar 2, 2022
- CVE-2016-979822Monitor
In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file.
MediumCVSS 5.3No exploitEPSS 4%bluez · bluezDec 3, 2016
- CVE-2016-979722Monitor
In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file.
MediumCVSS 5.3No exploitEPSS 4%bluez · bluezDec 3, 2016
- CVE-2016-980222Monitor
In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file.
MediumCVSS 5.3No exploitEPSS 3%bluez · bluezDec 3, 2016