BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.
History

Tue, 04 Nov 2025 16:30:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-09-02T00:00:00.000Z

Updated: 2025-11-04T16:09:51.043Z

Reserved: 2022-09-02T00:00:00.000Z

Link: CVE-2022-39176

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-09-02T04:15:11.427

Modified: 2025-11-04T16:15:51.260

Link: CVE-2022-39176

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-09-02T00:00:00Z

Links: CVE-2022-39176 - Bugzilla