CVE-2005-2716
https://notcve.org/view.php?id=CVE-2005-2716
The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in a Bluetooth device name. • http://affix.sourceforge.net/patch_btsrv_affix_2_1_2 http://affix.sourceforge.net/patch_btsrv_affix_3_2_0 http://marc.info/?l=bugtraq&m=112511370326063&w=2 http://secunia.com/advisories/16574 http://www.debian.org/security/2005/dsa-796 http://www.digitalmunition.com/DMA%5B2005-0826a%5D.txt http://www.securityfocus.com/bid/14672 https://exchange.xforce.ibmcloud.com/vulnerabilities/22034 •
CVE-2005-2277 – Nokia Affix 2.0/2.1/3.x - BTSRV/BTOBEX Remote Command Execution
https://notcve.org/view.php?id=CVE-2005-2277
Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename argument of a PUT command. Bluetooth FTP client (BTFTP) en Nokia Affix 2.1.2 y 3.2.0 permite que atacantes remotos ejecuten comandos arbitrarios mediante metacaracteres de shell en el argumento "filename" de un comando PUT. • https://www.exploit-db.com/exploits/25966 http://affix.sourceforge.net/affix_212_sec.patch http://affix.sourceforge.net/affix_320_sec.patch http://marc.info/?l=bugtraq&m=112119962704397&w=2 http://www.debian.org/security/2005/dsa-762 http://www.digitalmunition.com/DMA%5B2005-0712b%5D.txt http://www.securityfocus.com/bid/14232 •
CVE-2005-2250 – Nokia Affix < 3.2.0 - btftp Remote Client
https://notcve.org/view.php?id=CVE-2005-2250
Buffer overflow in Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary code via a long filename in an OBEX file share. Desbordamiento de búfer en Bluetooth FTP client (BTFTP) en Nokia Affix 2.1.2 and 3.2.0 permite que atacantes remotos ejecuten código arbitrario mediante un nombre de fichero largo en un recurso compartido OBEX. • https://www.exploit-db.com/exploits/1081 http://affix.sourceforge.net/affix_212_sec.patch http://www.debian.org/security/2005/dsa-762 http://www.digitalmunition.com/DMA%5B2005-0712a%5D.txt http://www.securityfocus.com/bid/14230 •
CVE-2005-1801 – Nokia 9500 - vCard Viewer Remote Denial of Service
https://notcve.org/view.php?id=CVE-2005-1801
The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it. • https://www.exploit-db.com/exploits/25736 http://www.securityfocus.com/bid/13784 http://www.securityfocus.com/infocus/1836 •
CVE-2005-1294 – Linux Kernel 2.4.x/2.6.x - 'Bluez' BlueTooth Signed Buffer Index Privilege Escalation
https://notcve.org/view.php?id=CVE-2005-1294
The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a socket call with a negative protocol value, which is used as an array index. • https://www.exploit-db.com/exploits/926 http://affix.sourceforge.net/patch_hci_3_2_0 http://marc.info/?l=bugtraq&m=111445064725591&w=2 http://www.digitalmunition.com/DMA%5B2005-0423a%5D.txt •