CVE-2022-0204
CVE-2022-0204
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.8EPSS 1.8%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
09 mar 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files causing an application to halt or crash, leading to a denial of service.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
n/a · bluez¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://bugzilla.redhat.com/show_bug.cgi?id=2039807https://github.com/bluez/bluez/commit/591c546c536b42bef696d027f64aa22434f8c3f0https://github.com/bluez/bluez/security/advisories/GHSA-479m-xcq5-9g2qhttps://lists.debian.org/debian-lts-announce/2022/10/msg00026.htmlhttps://lists.debian.org/debian-lts-announce/2024/09/msg00022.htmlhttps://security.gentoo.org/glsa/202209-16