Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability
# 1  
Old 07-15-2008
Mandriva: Updated bluez/bluez-utils packages fix SDP packet parsing vulnerability

LinuxSecurity.com: An input validation flaw was found in the Bluetooth Session Description Protocol (SDP) packet parser used in the Bluez bluetooth utilities. A bluetooth device with an already-trusted relationship, or a local user registering a service record via a UNIX socket or D-Bus interface, could cause a crash and potentially execute arbitrary code with the privileges of the hcid daemon (CVE-2008-2374). The updated packages have been patched to correct this issue.

More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
sdpadm(1M)						  System Administration Commands						sdpadm(1M)

NAME
sdpadm - SDP system configuration administration SYNOPSIS
/usr/sbin/sdpadm status | enable | disable DESCRIPTION
The sdpadm command is used to display the system state of the Sockets Direct Protocol (SDP) protocol. The sdpadm command can optionally be used to set the state of the SDP protocol. See sdp(7D). By default the SDP protocol is disabled on the system. It can be enabled by using sdpadm enable. OPTIONS
The following subcommands are supported: status Displays the system status of the SDP protocol enable Enables the SDP protocol disable Disables the SDP protocol USAGE
The required privileges to change the state of the SDP protocol are controlled by the network configuration policy. If a user does not have the correct privileges to set the SDP policy, sdpadm returns the current state of SDP without having changed the state. ATTRIBUTES
See attributes(5) for descriptions of the following attributes: +-----------------------------+-----------------------------+ | ATTRIBUTE TYPE | ATTRIBUTE VALUE | +-----------------------------+-----------------------------+ |Availability |SUNWibsdpu | +-----------------------------+-----------------------------+ |Interface Stability |Uncommitted | +-----------------------------+-----------------------------+ SEE ALSO
attributes(5), sdp(7D) Infiniband Specification Volume 1 (http://www.infinibandta.org) SunOS 5.11 22 Dec 2008 sdpadm(1M)