Red Hat Bugzilla – Bug 1401541
CVE-2016-9802 bluez: buffer over-read in l2cap_packet()
Last modified: 2016-12-05 09:41:02 EST
A buffer over-read was found in the l2cap_packet() function in monitor/packet.c source file of bluez. This issue can be triggered by processing a corrupted dump file and will result in btmon crash. Original report: https://www.spinics.net/lists/linux-bluetooth/msg68898.html
Created bluez tracking bugs for this issue: Affects: fedora-all [bug 1401548]