generic-poky/meta/recipes-connectivity/bluez5/bluez5
Ross Burton 4992fc465d bluez5: fix out-of-bounds access in SDP server (CVE-2017-1000250)
All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an
information disclosure vulnerability which allows remote attackers to obtain
sensitive information from the bluetoothd process memory. This vulnerability
lies in the processing of SDP search attribute requests.

(From OE-Core rev: d25716ceb3ffcdfcfa54516596bd94bf5c050bac)

(From OE-Core rev: c8f4cd337b9cc5c5c3fc40c6a6d8d2394fdc9ea3)

Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2018-01-07 17:07:57 +00:00
..
0001-Allow-using-obexd-without-systemd-in-the-user-sessio.patch bluez5: allow D-Bus to spawn obexd in systems without systemd 2016-03-20 23:12:30 +00:00
0001-tests-add-a-target-for-building-tests-without-runnin.patch bluez5: add ptest support 2016-04-03 15:51:36 +01:00
cve-2017-1000250.patch bluez5: fix out-of-bounds access in SDP server (CVE-2017-1000250) 2018-01-07 17:07:57 +00:00
init bluez5: fixed path to bluetoothd in sysvinit script 2016-05-20 10:20:55 +01:00
out-of-tree.patch bluez5: enable out-of-tree builds 2016-04-29 07:58:45 +01:00
run-ptest bluez5: add ptest support 2016-04-03 15:51:36 +01:00