CVE-2006-0670
https://notcve.org/view.php?id=CVE-2006-0670
Buffer overflow in l2cap.c in hcidump 1.29 allows remote attackers to cause a denial of service (crash) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet. Desbordamiento de bufér en l2cap.c en hcidump 1.29 permite a atacantes remotos provocar una denegación de servicio (caída) a través de una conexión inalámbrica de Bluetooth a través de un paquete Logical Link Control and Adaptation Protocol (L2CAP) malformado. • http://marc.info/?l=full-disclosure&m=113924625825488&w=2 http://secunia.com/advisories/18741 http://secunia.com/advisories/18971 http://secunia.com/advisories/19122 http://securityreason.com/securityalert/465 http://www.debian.org/security/2006/dsa-990 http://www.mandriva.com/security/advisories?name=MDKSA-2006:041 http://www.osvdb.org/23056 http://www.secuobs.com/news/05022006-bluetooth9.shtml#english http://www.securityfocus.com/archive/1/424133/100/0/threaded http:/ •
CVE-2005-2547
https://notcve.org/view.php?id=CVE-2005-2547
security.c in hcid for BlueZ 2.16, 2.17, and 2.18 allows remote attackers to execute arbitrary commands via shell metacharacters in the Bluetooth device name when invoking the PIN helper. • http://cvs.sourceforge.net/viewcvs.py/bluez/utils/hcid/security.c?r1=1.31&r2=1.34 http://secunia.com/advisories/16453 http://secunia.com/advisories/16476 http://sourceforge.net/mailarchive/forum.php?thread_id=7893206&forum_id=1881 http://www.debian.org/security/2005/dsa-782 http://www.gentoo.org/security/en/glsa/glsa-200508-09.xml http://www.securityfocus.com/bid/14572 https://bugs.gentoo.org/show_bug.cgi?id=101557 •