Bug 166791
| Summary: | [CAN-2005-2547] Remote attackers can execute arbitrary commands with crafted Bluetooth device name | ||
|---|---|---|---|
| Product: | [Retired] Fedora Legacy | Reporter: | Richard Dawe <rich> |
| Component: | bluez-libs | Assignee: | Fedora Legacy Bugs <bugs> |
| Status: | CLOSED NOTABUG | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | fc3 | CC: | mattdm |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-2547 | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2006-08-13 13:24:40 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Richard Dawe
2005-08-25 19:05:15 UTC
Fedora Core 3 is now maintained by the Fedora Legacy project for security updates only. If this problem is a security issue, please reopen and reassign to the Fedora Legacy product. If it is not a security issue and hasn't been resolved in the current FC5 updates or in the FC6 test release, reopen and change the version to match. Thank you! It doesn't look like there's an update for bluez-libs 1.19 in Fedora Legacy. Since this is a security issue, I've reassigned this to Fedora Legacy. Thanks! According to the CVE-2005-2547, this only effects bluez verions 2.16, 2.17, and 2.18. FC3 and 4 shipped 2.15 and thus are not vulnerable. |