CVE-2019-8921
Last modified
CVE-2019-8921 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by the SDP implementation. EPSS estimates a 0.94% chance of exploitation in the next 30 days.
Description
An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by the SDP implementation. By crafting a malicious CSTATE, it is possible to trick the server into returning more bytes than the buffer actually holds, resulting in leaking arbitrary heap data. The root cause can be found in the function service_attr_req of sdpd-request.c. The server does not check whether the CSTATE data is the same in consecutive requests, and instead simply trusts that it is the same.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Bluez | Bluez | <= 5.48 |
| Debian | Debian Linux | 10.0 |
References
- https://lists.debian.org/debian-lts-announce/2022/10/msg00026.htmlMailing List, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20211203-0002/Third Party Advisory
- https://ssd-disclosure.com/ssd-advisory-linux-bluez-information-leak-and-heap-overflow/Exploit, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/10/msg00026.htmlMailing List, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20211203-0002/Third Party Advisory
- https://ssd-disclosure.com/ssd-advisory-linux-bluez-information-leak-and-heap-overflow/Exploit, Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-8921?
How severe is CVE-2019-8921?
How do I fix CVE-2019-8921?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-8910An issue was discovered in WTCMS 1.0. It allows index.php?g=…
- CVE-2019-8911An issue was discovered in WTCMS 1.0. It has stored XSS via …
- CVE-2019-8912In the Linux kernel through 4.20.11, af_alg_release() in cry…7.8
- CVE-2019-8917SolarWinds Orion NPM before 12.4 suffers from a SYSTEM remot…
- CVE-2019-8919The seadroid (aka Seafile Android Client) application throug…
- CVE-2019-8920iart.php in XAMPP 1.7.0 has XSS, a related issue to CVE-2008…
- CVE-2019-8922A heap-based buffer overflow was discovered in bluetoothd in…8.8
- CVE-2019-8923XAMPP through 5.6.8 and previous allows SQL injection via th…
- CVE-2019-8924XAMPP through 5.6.8 allows XSS via the cds-fpdf.php interpre…
- CVE-2019-8925An issue was discovered in Zoho ManageEngine Netflow Analyze…
- CVE-2019-8926An issue was discovered in Zoho ManageEngine Netflow Analyze…
- CVE-2019-8927An issue was discovered in Zoho ManageEngine Netflow Analyze…
Are you affected by CVE-2019-8921?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
