UBUNTU-CVE-2011-2497
Dashboard / Vulnerabilities / UBUNTU-CVE-2011-2497
UBUNTU-CVE-2011-2497
Summary:
Details: Integer underflow in the l2cap_config_req function in net/bluetooth/l2cap_core.c in the Linux kernel before 3.0 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a small command-size value within the command header of a Logical Link Control and Adaptation Protocol (L2CAP) configuration request, leading to a buffer overflow.
References: https://ubuntu.com/security/CVE-2011-2497, https://ubuntu.com/security/notices/USN-1220-1, https://ubuntu.com/security/notices/USN-1219-1, https://ubuntu.com/security/notices/USN-1225-1, https://ubuntu.com/security/notices/USN-1227-1, https://ubuntu.com/security/notices/USN-1228-1, https://ubuntu.com/security/notices/USN-1239-1, https://ubuntu.com/security/notices/USN-1246-1, https://ubuntu.com/security/notices/USN-1245-1, https://ubuntu.com/security/notices/USN-1241-1, https://ubuntu.com/security/notices/USN-1240-1, https://ubuntu.com/security/notices/USN-1253-1, https://ubuntu.com/security/notices/USN-1256-1, https://www.cve.org/CVERecord?id=CVE-2011-2497
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
