The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Debian
Subscribe
|
Debian Linux
Subscribe
|
|
Linux
Subscribe
|
Linux Kernel
Subscribe
|
|
Nvidia
Subscribe
|
|
|
Redhat
Subscribe
|
Enterprise Linux
Subscribe
Enterprise Linux Desktop
Subscribe
Enterprise Linux Server
Subscribe
Enterprise Linux Server Aus
Subscribe
Enterprise Linux Server Eus
Subscribe
Enterprise Linux Server Tus
Subscribe
Enterprise Linux Workstation
Subscribe
Enterprise Mrg
Subscribe
Rhel Aus
Subscribe
Rhel Eus
Subscribe
Rhel Extras Rt
Subscribe
Rhel Mission Critical
Subscribe
Rhel Tus
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1099-1 | linux security update |
Debian DSA |
DSA-3981-1 | linux security update |
EUVD |
EUVD-2017-1512 | The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space. |
Ubuntu USN |
USN-3419-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3419-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-3420-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3420-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3422-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3422-2 | Linux kernel (Trusty HWE) vulnerabilities |
Ubuntu USN |
USN-3423-1 | Linux kernel vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T22:00:39.937Z
Reserved: 2017-09-12T00:00:00
Link: CVE-2017-1000251
No data.
Status : Deferred
Published: 2017-09-12T17:29:00.227
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-1000251
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN