[Buildroot] [PATCH 1/1] package/bluez5_utils: security bump version to 5.47

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Sun Sep 17 16:52:45 UTC 2017


Hello,

On Sat, 16 Sep 2017 10:41:17 +0200, Bernd Kuhls wrote:
> Fixes CVE-2017-1000250 - All versions of the SDP server in BlueZ 5.46 and
> earlier are vulnerable to an information disclosure vulnerability which
> allows remote attackers to obtain sensitive information from the bluetoothd
> process memory.  This vulnerability lies in the processing of SDP search
> attribute requests.
> 
> Signed-off-by: Bernd Kuhls <bernd.kuhls at t-online.de>
> ---
>  package/bluez5_utils/bluez5_utils.hash | 2 +-
>  package/bluez5_utils/bluez5_utils.mk   | 2 +-
>  2 files changed, 2 insertions(+), 2 deletions(-)

Applied to master, thanks.

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com


More information about the buildroot mailing list