OESA-2022-1595

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2022-1595
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2022-1595.json
JSON Data
https://api.test.osv.dev/v1/vulns/OESA-2022-1595
Upstream
Published
2022-03-26T11:03:40Z
Modified
2025-08-12T05:11:05.446426Z
Summary
bluez security update
Details

This package provides all utilities for use in Bluetooth applications. The BLUETOOTH trademarks are owned by Bluetooth SIG, Inc., U.S.A.

Security Fix(es):

A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files causing an application to halt or crash, leading to a denial of service.(CVE-2022-0204)

Database specific
{
    "severity": "High"
}
References

Affected packages

openEuler:20.03-LTS-SP1 / bluez

Package

Name
bluez
Purl
pkg:rpm/openEuler/bluez&distro=openEuler-20.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.54-9.oe1

Ecosystem specific

{
    "src": [
        "bluez-5.54-9.oe1.src.rpm"
    ],
    "x86_64": [
        "bluez-libs-5.54-9.oe1.x86_64.rpm",
        "bluez-cups-5.54-9.oe1.x86_64.rpm",
        "bluez-5.54-9.oe1.x86_64.rpm",
        "bluez-debuginfo-5.54-9.oe1.x86_64.rpm",
        "bluez-debugsource-5.54-9.oe1.x86_64.rpm",
        "bluez-devel-5.54-9.oe1.x86_64.rpm"
    ],
    "aarch64": [
        "bluez-libs-5.54-9.oe1.aarch64.rpm",
        "bluez-5.54-9.oe1.aarch64.rpm",
        "bluez-debuginfo-5.54-9.oe1.aarch64.rpm",
        "bluez-devel-5.54-9.oe1.aarch64.rpm",
        "bluez-debugsource-5.54-9.oe1.aarch64.rpm",
        "bluez-cups-5.54-9.oe1.aarch64.rpm"
    ],
    "noarch": [
        "bluez-help-5.54-9.oe1.noarch.rpm"
    ]
}

openEuler:20.03-LTS-SP2 / bluez

Package

Name
bluez
Purl
pkg:rpm/openEuler/bluez&distro=openEuler-20.03-LTS-SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.54-9.oe1

Ecosystem specific

{
    "src": [
        "bluez-5.54-9.oe1.src.rpm"
    ],
    "x86_64": [
        "bluez-5.54-9.oe1.x86_64.rpm",
        "bluez-debuginfo-5.54-9.oe1.x86_64.rpm",
        "bluez-devel-5.54-9.oe1.x86_64.rpm",
        "bluez-cups-5.54-9.oe1.x86_64.rpm",
        "bluez-debugsource-5.54-9.oe1.x86_64.rpm",
        "bluez-libs-5.54-9.oe1.x86_64.rpm"
    ],
    "aarch64": [
        "bluez-libs-5.54-9.oe1.aarch64.rpm",
        "bluez-debugsource-5.54-9.oe1.aarch64.rpm",
        "bluez-5.54-9.oe1.aarch64.rpm",
        "bluez-devel-5.54-9.oe1.aarch64.rpm",
        "bluez-debuginfo-5.54-9.oe1.aarch64.rpm",
        "bluez-cups-5.54-9.oe1.aarch64.rpm"
    ],
    "noarch": [
        "bluez-help-5.54-9.oe1.noarch.rpm"
    ]
}

openEuler:20.03-LTS-SP3 / bluez

Package

Name
bluez
Purl
pkg:rpm/openEuler/bluez&distro=openEuler-20.03-LTS-SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.54-9.oe1

Ecosystem specific

{
    "src": [
        "bluez-5.54-9.oe1.src.rpm"
    ],
    "x86_64": [
        "bluez-devel-5.54-9.oe1.x86_64.rpm",
        "bluez-5.54-9.oe1.x86_64.rpm",
        "bluez-debuginfo-5.54-9.oe1.x86_64.rpm",
        "bluez-libs-5.54-9.oe1.x86_64.rpm",
        "bluez-debugsource-5.54-9.oe1.x86_64.rpm",
        "bluez-cups-5.54-9.oe1.x86_64.rpm"
    ],
    "aarch64": [
        "bluez-5.54-9.oe1.aarch64.rpm",
        "bluez-devel-5.54-9.oe1.aarch64.rpm",
        "bluez-debugsource-5.54-9.oe1.aarch64.rpm",
        "bluez-debuginfo-5.54-9.oe1.aarch64.rpm",
        "bluez-libs-5.54-9.oe1.aarch64.rpm",
        "bluez-cups-5.54-9.oe1.aarch64.rpm"
    ],
    "noarch": [
        "bluez-help-5.54-9.oe1.noarch.rpm"
    ]
}