Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

21 – 30 of 51 results


CVE-2021-43400

Medium priority

Some fixes available 4 of 5

An issue was discovered in gatt-database.c in BlueZ 5.61. A use-after-free can occur when a client disconnects during D-Bus processing of a WriteValue call.

1 affected packages

bluez

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Not affected Not affected Fixed Fixed Vulnerable
Show less packages

CVE-2021-34148

Medium priority
Needs evaluation

The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the reception of LMP_max_slot with a greater ACL Length after completion of the LMP setup procedure,...

1 affected packages

bluez-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez-firmware Needs evaluation Needs evaluation Not in release Not in release Ignored
Show less packages

CVE-2021-34147

Medium priority
Needs evaluation

The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle the reception of a malformed LMP timing accuracy response followed by multiple reconnections to the...

1 affected packages

bluez-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez-firmware Needs evaluation Needs evaluation Not in release Not in release Ignored
Show less packages

CVE-2021-34146

Medium priority
Needs evaluation

The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and restart...

1 affected packages

bluez-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez-firmware Needs evaluation Needs evaluation Not in release Not in release Ignored
Show less packages

CVE-2021-34145

Medium priority
Needs evaluation

The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the reception of LMP_max_slot with an invalid Baseband packet type (and LT_ADDRESS and LT_ADDR) after...

1 affected packages

bluez-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez-firmware Needs evaluation Needs evaluation Not in release Not in release Ignored
Show less packages

CVE-2021-3658

Low priority
Fixed

bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up. If a device is powered down while discoverable, it will be discoverable when powered on again....

1 affected packages

bluez

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Not affected Fixed Not affected Not affected
Show less packages

CVE-2021-3588

Medium priority
Fixed

The cli_feat_read_cb() function in src/gatt-database.c does not perform bounds checks on the 'offset' variable before using it as an index into an array for reading.

1 affected packages

bluez

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Not affected Fixed Not affected Not affected
Show less packages

CVE-2021-0129

Medium priority

Some fixes available 63 of 72

Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access.

132 affected packages

bluez, linux, linux-allwinner, linux-allwinner-5.19, linux-aws...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Not affected Not affected Fixed Fixed Fixed
linux Not affected Not affected Fixed Fixed Fixed
linux-allwinner Not in release Not in release Not in release Not in release Not in release
linux-allwinner-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws Not affected Not affected Fixed Fixed Fixed
linux-aws-5.0 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Fixed Not in release Not in release
linux-aws-5.13 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws-5.3 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.4 Not in release Not in release Not in release Fixed Not in release
linux-aws-5.8 Not in release Not in release Fixed Not in release Not in release
linux-aws-6.2 Not in release Not affected Not in release Not in release Not in release
linux-aws-6.5 Not in release Not affected Not in release Not in release Not in release
linux-aws-fips Not in release Not in release Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release Fixed
linux-azure Not affected Not affected Fixed Ignored Fixed
linux-azure-4.15 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.11 Not in release Not in release Fixed Not in release Not in release
linux-azure-5.13 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-5.3 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.4 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.8 Not in release Not in release Fixed Not in release Not in release
linux-azure-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-6.5 Not in release Not affected Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Ignored Not in release
linux-azure-fde Not in release Not affected Fixed Not in release Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-fde-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-fde-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-fips Not in release Not in release Not in release Not in release Not in release
linux-bluefield Not in release Not in release Fixed Not in release Not in release
linux-dell300x Not in release Not in release Not in release Fixed Not in release
linux-fips Not in release Not in release Not in release Not in release Ignored
linux-gcp Not affected Not affected Fixed Ignored Fixed
linux-gcp-4.15 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.11 Not in release Not in release Fixed Not in release Not in release
linux-gcp-5.13 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.19 Not in release Not affected Not in release Not in release Not in release
linux-gcp-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.8 Not in release Not in release Fixed Not in release Not in release
linux-gcp-6.2 Not in release Not affected Not in release Not in release Not in release
linux-gcp-6.5 Not in release Not affected Not in release Not in release Not in release
linux-gcp-edge Not in release Not in release Not in release Ignored Not in release
linux-gcp-fips Not in release Not in release Not in release Not in release Not in release
linux-gke Not affected Not affected Fixed Not in release Ignored
linux-gke-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.0 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gke-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.4 Not in release Not in release Not in release Fixed Not in release
linux-gkeop Not in release Not affected Fixed Not in release Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Fixed Not in release
linux-hwe Not in release Not in release Not in release Ignored Fixed
linux-hwe-5.11 Not in release Not in release Fixed Not in release Not in release
linux-hwe-5.13 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-hwe-5.4 Not in release Not in release Not in release Fixed Not in release
linux-hwe-5.8 Not in release Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored Ignored
linux-ibm Not affected Not affected Not affected Not in release Not in release
linux-ibm-5.15 Not in release Not in release Not affected Not in release Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Not affected Not in release Not in release
linux-intel-iot-realtime Not in release Not in release Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release Not in release
linux-iot Not in release Not in release Not affected Not in release Not in release
linux-kvm Not in release Not affected Fixed Fixed Fixed
linux-laptop Not in release Not in release Not in release Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release Not in release
linux-nvidia-6.2 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored Ignored
linux-oem-5.10 Not in release Not in release Fixed Not in release Not in release
linux-oem-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.14 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.17 Not in release Not affected Not in release Not in release Not in release
linux-oem-5.6 Not in release Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.1 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.5 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release Not in release
linux-oem-osp1 Not in release Not in release Not in release Ignored Not in release
linux-oracle Not affected Not affected Fixed Fixed Fixed
linux-oracle-5.0 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Fixed Not in release Not in release
linux-oracle-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.3 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not in release Not in release Fixed Not in release
linux-oracle-5.8 Not in release Not in release Fixed Not in release Not in release
linux-oracle-6.5 Not in release Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Fixed Not in release Not in release
linux-raspi-5.4 Not in release Not in release Not in release Fixed Not in release
linux-raspi-realtime Not in release Not in release Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Fixed Ignored
linux-raspi2-5.3 Not in release Not in release Not in release Ignored Not in release
linux-realtime Not in release Ignored Not in release Not in release Not in release
linux-riscv Not affected Not affected Ignored Not in release Not in release
linux-riscv-5.11 Not in release Not in release Fixed Not in release Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.19 Not in release Not affected Not in release Not in release Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Not affected Not in release Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release Not in release
linux-snapdragon Not in release Not in release Not in release Fixed Ignored
linux-starfive Not in release Not in release Not in release Not in release Not in release
linux-starfive-5.19 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.2 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.5 Not in release Not affected Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release Not in release
Show all 132 packages Show less packages

CVE-2020-26558

Medium priority

Some fixes available 63 of 72

Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure)...

132 affected packages

bluez, linux, linux-allwinner, linux-allwinner-5.19, linux-aws...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Not affected Not affected Fixed Fixed Fixed
linux Not affected Not affected Fixed Fixed Fixed
linux-allwinner Not in release Not in release Not in release Not in release Not in release
linux-allwinner-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws Not affected Not affected Fixed Fixed Fixed
linux-aws-5.0 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Fixed Not in release Not in release
linux-aws-5.13 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws-5.3 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.4 Not in release Not in release Not in release Fixed Not in release
linux-aws-5.8 Not in release Not in release Fixed Not in release Not in release
linux-aws-6.2 Not in release Not affected Not in release Not in release Not in release
linux-aws-6.5 Not in release Not affected Not in release Not in release Not in release
linux-aws-fips Not in release Not in release Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release Fixed
linux-azure Not affected Not affected Fixed Ignored Fixed
linux-azure-4.15 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.11 Not in release Not in release Fixed Not in release Not in release
linux-azure-5.13 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-5.3 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.4 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.8 Not in release Not in release Fixed Not in release Not in release
linux-azure-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-6.5 Not in release Not affected Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Ignored Not in release
linux-azure-fde Not in release Not affected Fixed Not in release Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-fde-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-fde-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-fips Not in release Not in release Not in release Not in release Not in release
linux-bluefield Not in release Not in release Fixed Not in release Not in release
linux-dell300x Not in release Not in release Not in release Fixed Not in release
linux-fips Not in release Not in release Not in release Not in release Ignored
linux-gcp Not affected Not affected Fixed Ignored Fixed
linux-gcp-4.15 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.11 Not in release Not in release Fixed Not in release Not in release
linux-gcp-5.13 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.19 Not in release Not affected Not in release Not in release Not in release
linux-gcp-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.8 Not in release Not in release Fixed Not in release Not in release
linux-gcp-6.2 Not in release Not affected Not in release Not in release Not in release
linux-gcp-6.5 Not in release Not affected Not in release Not in release Not in release
linux-gcp-edge Not in release Not in release Not in release Ignored Not in release
linux-gcp-fips Not in release Not in release Not in release Not in release Not in release
linux-gke Not affected Not affected Fixed Not in release Ignored
linux-gke-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.0 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gke-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.4 Not in release Not in release Not in release Fixed Not in release
linux-gkeop Not in release Not affected Fixed Not in release Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Fixed Not in release
linux-hwe Not in release Not in release Not in release Ignored Fixed
linux-hwe-5.11 Not in release Not in release Fixed Not in release Not in release
linux-hwe-5.13 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-hwe-5.4 Not in release Not in release Not in release Fixed Not in release
linux-hwe-5.8 Not in release Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored Ignored
linux-ibm Not affected Not affected Not affected Not in release Not in release
linux-ibm-5.15 Not in release Not in release Not affected Not in release Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Not affected Not in release Not in release
linux-intel-iot-realtime Not in release Not in release Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release Not in release
linux-iot Not in release Not in release Not affected Not in release Not in release
linux-kvm Not in release Not affected Fixed Fixed Fixed
linux-laptop Not in release Not in release Not in release Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release Not in release
linux-nvidia-6.2 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored Ignored
linux-oem-5.10 Not in release Not in release Fixed Not in release Not in release
linux-oem-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.14 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.17 Not in release Not affected Not in release Not in release Not in release
linux-oem-5.6 Not in release Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.1 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.5 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release Not in release
linux-oem-osp1 Not in release Not in release Not in release Ignored Not in release
linux-oracle Not affected Not affected Fixed Fixed Fixed
linux-oracle-5.0 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Fixed Not in release Not in release
linux-oracle-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.3 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not in release Not in release Fixed Not in release
linux-oracle-5.8 Not in release Not in release Fixed Not in release Not in release
linux-oracle-6.5 Not in release Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Fixed Not in release Not in release
linux-raspi-5.4 Not in release Not in release Not in release Fixed Not in release
linux-raspi-realtime Not in release Not in release Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Fixed Ignored
linux-raspi2-5.3 Not in release Not in release Not in release Ignored Not in release
linux-realtime Not in release Ignored Not in release Not in release Not in release
linux-riscv Not affected Not affected Ignored Not in release Not in release
linux-riscv-5.11 Not in release Not in release Fixed Not in release Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.19 Not in release Not affected Not in release Not in release Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Not affected Not in release Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release Not in release
linux-snapdragon Not in release Not in release Not in release Fixed Ignored
linux-starfive Not in release Not in release Not in release Not in release Not in release
linux-starfive-5.19 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.2 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.5 Not in release Not affected Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release Not in release
Show all 132 packages Show less packages

CVE-2020-27153

Low priority
Fixed

In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c. A remote attacker could potentially cause a denial of service or code execution, during service discovery, due to a redundant...

1 affected packages

bluez

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bluez Fixed Fixed Fixed Fixed
Show less packages