UBUNTU-CVE-2017-1000251
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-1000251
UBUNTU-CVE-2017-1000251
Summary:
Details: The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.
References: https://ubuntu.com/security/CVE-2017-1000251, https://www.armis.com/blueborne, https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/BlueBorne, https://ubuntu.com/security/notices/USN-3419-1, https://ubuntu.com/security/notices/USN-3419-2, https://ubuntu.com/security/notices/USN-3420-1, https://ubuntu.com/security/notices/USN-3420-2, https://ubuntu.com/security/notices/USN-3422-1, https://ubuntu.com/security/notices/USN-3422-2, https://ubuntu.com/security/notices/USN-3423-1, https://www.cve.org/CVERecord?id=CVE-2017-1000251
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
