Bluez / Bluez
40 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-19774 | BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 8.0 | Sep 15, 2026 |
| CVE-2024-8805 | BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability | HIGH | 8.8 | Nov 22, 2024 |
| CVE-2023-51596 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 7.1 | May 3, 2024 |
| CVE-2023-51594 | BlueZ OBEX Library Out-Of-Bounds Read Information Disclosure Vulnerability | MEDIUM | 5.7 | May 3, 2024 |
| CVE-2023-51592 | BlueZ Audio Profile AVRCP parse_media_folder Out-Of-Bounds Read Information Disclosure Vulnerability | MEDIUM | 5.7 | May 3, 2024 |
| CVE-2023-51589 | BlueZ Audio Profile AVRCP parse_media_element Out-Of-Bounds Read Information Disclosure Vulnerability | MEDIUM | 5.7 | May 3, 2024 |
| CVE-2023-51580 | BlueZ Audio Profile AVRCP avrcp_parse_attribute_list Out-Of-Bounds Read Information Disclosure Vulnerability | MEDIUM | 5.7 | May 3, 2024 |
| CVE-2023-50230 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 8.0 | May 3, 2024 |
| CVE-2023-50229 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 8.0 | May 3, 2024 |
| CVE-2023-44431 | BlueZ Audio Profile AVRCP Stack-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 8.0 | May 3, 2024 |
| CVE-2023-27349 | BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability | HIGH | 8.0 | May 3, 2024 |
| CVE-2022-3637 | Linux Kernel BlueZ jlink.c jlink_init denial of service | MEDIUM | 5.5 | Oct 21, 2022 |
| CVE-2022-3563 | Linux Kernel BlueZ mgmt-tester.c read_50_controller_cap_complete null pointer dereference | MEDIUM | 5.7 | Oct 17, 2022 |
| CVE-2022-39177 | bluez: BlueZ allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be processed in profiles/audio/a… | HIGH | 8.8 | Sep 2, 2022 |
| CVE-2022-39176 | bluez: BlueZ allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len | HIGH | 8.8 | Sep 2, 2022 |
| CVE-2022-0204 | bluez: heap-based buffer overflow in the implementation of the gatt protocol | HIGH | 8.8 | Mar 9, 2022 |
| CVE-2021-3658 | bluez: adapter incorrectly restores Discoverable state after powered down | MEDIUM | 6.5 | Mar 2, 2022 |
| CVE-2019-8922 | bluez: heap-based buffer overflow via crafted request | HIGH | 8.8 | Nov 29, 2021 |
| CVE-2019-8921 | bluez: information leak in service_attr_req() in sdpd-request.c via a crafted CSTATE | MEDIUM | 6.5 | Nov 29, 2021 |
| CVE-2021-41229 | Memory leak in BlueZ | MEDIUM | 6.5 | Nov 12, 2021 |
| CVE-2021-43400 | bluez: use-after-free in gatt-database.c | CRITICAL | 9.1 | Nov 4, 2021 |
| CVE-2021-3588 | memory contents disclosure in cli_feat_read_cb | LOW | 3.3 | Jun 10, 2021 |
| CVE-2021-0129 | kernel: Improper access control in BlueZ may allow information disclosure vulnerability. | MEDIUM | 5.7 | Jun 9, 2021 |
| CVE-2020-24490 | kernel: net: bluetooth: heap buffer overflow when processing extended advertising report events | HIGH | 7.1 | Feb 2, 2021 |
| CVE-2020-27153 | bluez: double free in gatttool client disconnect callback handler in src/shared/att.c could lead to DoS or RCE | HIGH | 8.8 | Oct 15, 2020 |
Showing 1 to 25 of 40 CVEs