Package "bluez"
| Name: |
bluez
|
Description: |
This package is just an umbrella for a group of other packages,
it has no description. Description samples from packages in group:
- Bluetooth support (metapackage)
- Analyses Bluetooth HCI packets
- bluetooth mesh daemon
- Source code for the BlueZ Linux Bluetooth stack
|
| Latest version: |
5.85-4ubuntu0.3 |
| Release: |
resolute (26.04) |
| Level: |
security |
| Repository: |
universe |
Links
Other versions of "bluez" in Resolute
Packages in group
Deleted packages are displayed in grey.
Changelog
|
bluez (5.85-4ubuntu0.3) resolute-security; urgency=medium
* SECURITY UPDATE: stack-based buffer overflow
- debian/patches/CVE-2026-19774.patch: a2dp: Fix handling of codec
capability storage in profiles/audio/a2dp.c.
- CVE-2026-19774
* SECURITY UPDATE: out-of-bounds read
- debian/patches/CVE-2026-75032_1.patch: avrcp: Fix Out-of-Bounds Read in
AVRCP GetFolderItems parsing in profiles/audio/avrcp.c.
- debian/patches/CVE-2026-75032_2.patch: avrcp: Fix media/folder name not
being set in profiles/audio/avrcp.c.
- CVE-2026-75032
* SECURITY UPDATE: type confusion
- debian/patches/CVE-2026-80185.patch: sdp-xml: Fix crash caused by type
confusion when parsing crafted SDP XML in src/sdp-xml.c.
- CVE-2026-80185
* SECURITY UPDATE: stack-based buffer overflow
- debian/patches/CVE-2026-80186.patch: eir: Fix stack buffer overflow when
parsing the remote name in src/eir.c.
- CVE-2026-80186
* SECURITY UPDATE: out-of-bounds access
- debian/patches/CVE-2026-85218.patch: avrcp: Fix out-of-bounds parsing of
ListPlayerAttributes response in profiles/audio/avrcp.c.
- CVE-2026-85218
-- Allen Huang Wed, 07 Oct 2026 21:28:40 +0100
|
| CVE-2026-19774 |
BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary |
| CVE-2026-75032 |
A flaw was found in BlueZ. Insufficient validation of packet length fields in GetFolderItems responses within the Audio/Video Remote Control Profile |
| CVE-2026-80185 |
BlueZ sdp-xml.c type confusion via RegisterProfile(ServiceRecord) can crash bluetoothd (local DoS): a crafted nested ServiceRecord can corrupt the SD |
| CVE-2026-80186 |
A stack-based buffer overflow vulnerability exists in BlueZ, the Linux Bluetooth protocol stack. A remote user within Bluetooth radio range can send |
|
About
-
Send Feedback to @ubuntu_updates