1 results (0.005 seconds)
CVSS: 9.8EPSS: 6%CPEs: 4EXPL: 1

CVE-2008-2374 – bluez-libs: SDP payload processing vulnerability
https://notcve.org/view.php?id=CVE-2008-2374
07 Jul 2008 — src/sdp.c in bluez-libs 3.30 in BlueZ, and other bluez-libs before 3.34 and bluez-utils before 3.34 versions, does not validate string length fields in SDP packets, which allows remote SDP servers to cause a denial of service or possibly have unspecified other impact via a crafted length field that triggers excessive memory allocation or a buffer over-read. src/sdp.c de bluez-libs 3.30 en BlueZ, y otras bluez-libs anteriores a 3.34 y bluez-utils anteriores a 3.34, no validan la longitud de los campos de cad... • http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00005.html • CWE-1284: Improper Validation of Specified Quantity in Input •