[CLSA-2026:1777541445] bluez: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-05-02 01:09:55 UTC
Description:
- CVE-2022-0204: fix heap overflow when appending prepare writes in gatt-server - CVE-2022-39176: fix not checking params_len in AVRCP vendordep PDU handling - CVE-2022-39177: fix accepting invalid/malformed capabilities in AVDTP
Updated packages:
  • bluez-5.44-7.el7.tuxcare.els1.x86_64.rpm
    sha:2f0c03f53478070156fd4d35506b8f75ae2c30074f7a25d8a6d242f085f2b11d
  • bluez-cups-5.44-7.el7.tuxcare.els1.x86_64.rpm
    sha:bc7da97cdc46d0df701ac9444d95b546a84e6eb204ebebe36528033e7a2e5636
  • bluez-hid2hci-5.44-7.el7.tuxcare.els1.x86_64.rpm
    sha:c2885f7573a56d43faf43917d4cd79826e9eff8c4292c288eb5844ebdbeca0d5
  • bluez-libs-5.44-7.el7.tuxcare.els1.i686.rpm
    sha:2034a9df2a734c652d092d0b191d3e7dc3e7cddf1a829d977501c587a950df5b
  • bluez-libs-5.44-7.el7.tuxcare.els1.x86_64.rpm
    sha:4c163e36f42808866ed27de88aa914cbbfaf64ff6bf26bd8197123f8a5f6d01a
  • bluez-libs-devel-5.44-7.el7.tuxcare.els1.i686.rpm
    sha:9475d41df5e68c1d7a4b3500e416dfa90579e22383c98eb8e44332927133811b
  • bluez-libs-devel-5.44-7.el7.tuxcare.els1.x86_64.rpm
    sha:980b66e0de5c9b22ed1012ce4d80b3a2218e33552a936026b340992774c06ece
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.