Format: 1.8 Date: Mon, 23 Mar 2020 08:39:08 -0400 Source: bluez Binary: libbluetooth3 libbluetooth3-dbg libbluetooth-dev bluetooth bluez bluez-dbg bluez-cups bluez-obexd bluez-hcidump bluez-tests Architecture: s390x Version: 5.37-0ubuntu5.3 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: bluetooth - Bluetooth support bluez - Bluetooth tools and daemons bluez-cups - Bluetooth printer driver for CUPS bluez-dbg - Bluetooth tools and daemons (with debugging symbols) bluez-hcidump - Analyses Bluetooth HCI packets bluez-obexd - bluez obex daemon bluez-tests - BlueZ test tools and scripts libbluetooth-dev - Development files for using the BlueZ Linux Bluetooth library libbluetooth3 - Library to use the BlueZ Linux Bluetooth stack libbluetooth3-dbg - Library to use the BlueZ Linux Bluetooth stack with debugging sym Changes: bluez (5.37-0ubuntu5.3) xenial-security; urgency=medium . * SECURITY UPDATE: buffer overflow in parse_line function - debian/patches/CVE-2016-7837.patch: make sure we don't write past the end of the array in tools/csr.c. - CVE-2016-7837 * SECURITY UPDATE: privilege escalation via improper access control - debian/patches/CVE-2020-0556-pre1.patch: use .accept and .disconnect instead of attio in profiles/input/hog.c, src/device.c, src/device.h. - debian/patches/CVE-2020-0556-1.patch: HOGP must only accept data from bonded devices in profiles/input/hog.c. - debian/patches/CVE-2020-0556-2.patch: HID accepts bonded device connections only in profiles/input/device.c, profiles/input/device.h, profiles/input/input.conf, profiles/input/manager.c. - debian/patches/CVE-2020-0556-3.patch: attempt to set security level if not bonded in profiles/input/hog.c. - debian/patches/CVE-2020-0556-4.patch: add LEAutoSecurity setting to input.conf in profiles/input/device.h, profiles/input/hog.c, profiles/input/input.conf, profiles/input/manager.c. - CVE-2020-0556 Checksums-Sha1: 8e85f6eb39c17cae43eaf8b34537380e1f9de88e 936 bluez-cups-dbgsym_5.37-0ubuntu5.3_s390x.ddeb cee3c282313e0e0342692e899afaf940a7525982 56362 bluez-cups_5.37-0ubuntu5.3_s390x.deb e4fd236a4cde0a322f1cb2cb4a271f292ae74599 6006190 bluez-dbg_5.37-0ubuntu5.3_s390x.deb c67d63a818db27c18832af654a438ec2a536510a 940 bluez-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 75ed97a55e63fe963178c472e2aa14a35c3f5ed2 1066 bluez-hcidump-dbgsym_5.37-0ubuntu5.3_s390x.ddeb b240f1d25ea9e89d935ab035ce0a9f21d4cf9e12 122182 bluez-hcidump_5.37-0ubuntu5.3_s390x.deb 75d486b24e3e996b6fc558a0e9b4c161b6702525 1040 bluez-obexd-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 94c9668c5141ba132911f3aa0adbce9c6d8b85c2 149568 bluez-obexd_5.37-0ubuntu5.3_s390x.deb 6587fb2cc1aba8d42916e72e86d6225b9e57625f 932 bluez-tests-dbgsym_5.37-0ubuntu5.3_s390x.ddeb e11eb1018e61d6a6745ee8244980f21f6e6a9c6d 203988 bluez-tests_5.37-0ubuntu5.3_s390x.deb dd96f862b2b8087044aa30e5009f199262ed02d1 814098 bluez_5.37-0ubuntu5.3_s390x.deb 0922c558e0e099f3e437688a328c0fde87e24ad1 888 libbluetooth-dev-dbgsym_5.37-0ubuntu5.3_s390x.ddeb b32a11d0130e37add324fc84ed8f7633401a4ed1 142740 libbluetooth-dev_5.37-0ubuntu5.3_s390x.deb 5b7995996851174b152a5a210d1d6e9051bcf986 2984 libbluetooth3-dbg_5.37-0ubuntu5.3_s390x.deb 983276f7e4516a156eec8073f9de7ca209e5a4f5 896 libbluetooth3-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 58a6a40099142489ff258943088f607037c6c70a 56878 libbluetooth3_5.37-0ubuntu5.3_s390x.deb Checksums-Sha256: 5ea9d2390f50435dd4ed0a10368c24a0c913060b418cc49d8dfeef7081ead520 936 bluez-cups-dbgsym_5.37-0ubuntu5.3_s390x.ddeb a858ea683ce1fe65bb775e5a91d0df7434ccca6d40c422e1e447fc8bdd7dfc8b 56362 bluez-cups_5.37-0ubuntu5.3_s390x.deb 8f4a4d77634814c9ec870aa260fe09c49558783439a6d9228b5fdcdc306a7a2c 6006190 bluez-dbg_5.37-0ubuntu5.3_s390x.deb 248340fc5f9cecadbf6a0d70c3f606166ce7a8803a85079ad2d317111fe2b22e 940 bluez-dbgsym_5.37-0ubuntu5.3_s390x.ddeb bc1dcf29e9b002c2a6b943bf48b8c75ebe75c3137d5d54031070312e58436c7d 1066 bluez-hcidump-dbgsym_5.37-0ubuntu5.3_s390x.ddeb b12215935d5e4596aabcf876c06907f1d7aafedd2812b5add0a55c382d2615bc 122182 bluez-hcidump_5.37-0ubuntu5.3_s390x.deb d5673a8ff9e79b9d27e6d08219457d5d9d08f00bfa659e7c54350d56472d44b9 1040 bluez-obexd-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 26331ae86d28dae5522124c88ddd4ba59853eec48a0d4fbbd5a12952f563f7e3 149568 bluez-obexd_5.37-0ubuntu5.3_s390x.deb 818ee6075f119671c4a34807c38e5f09931e31412b35f2788d5359ebb9808a3c 932 bluez-tests-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 8f3106ab54329440b4ab5cb5ef39e99f2c3eb92a321d5459f6896dd79b5f1a38 203988 bluez-tests_5.37-0ubuntu5.3_s390x.deb 510a59a387cdc003a1e97aee46307ceeefcc05a445f3c1bf9d0a1d142ee318dd 814098 bluez_5.37-0ubuntu5.3_s390x.deb 6b6ca98f03633c54179cee6de23d811048c7301eb4da65e0029fd341e47ec126 888 libbluetooth-dev-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 7b825b76d8be125d76647c9808dcd365255e4823b043decf73fe414ff3d8f877 142740 libbluetooth-dev_5.37-0ubuntu5.3_s390x.deb 79712c314b44428a0912d31eab681a93bc07bc62c722735c467c218371ee4d33 2984 libbluetooth3-dbg_5.37-0ubuntu5.3_s390x.deb 0d24f12048a8e83d0fd99c7db7b8942a7c4c88e9e64875f4149c583d53a44e83 896 libbluetooth3-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 3945b5d6a938cba5ebc6f8e8429f22ae2acf125e2c1cc359cad9fe3f3ff1fd97 56878 libbluetooth3_5.37-0ubuntu5.3_s390x.deb Files: 0be5f1db7121dcf313dc4eb03c18a405 936 admin extra bluez-cups-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 58c9b40427f05e64b98995e142f22fa4 56362 admin optional bluez-cups_5.37-0ubuntu5.3_s390x.deb f81d82a76edb18b9e7e4da7403439692 6006190 debug extra bluez-dbg_5.37-0ubuntu5.3_s390x.deb 32840889aa10d8fcf02109ebf6adae12 940 admin extra bluez-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 22fa9b7a1a415ca46bb9ba2631557b35 1066 admin extra bluez-hcidump-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 785986b076dffbaf8401ba1ab9ebd023 122182 admin optional bluez-hcidump_5.37-0ubuntu5.3_s390x.deb 5b6dd793b0a09f900540dac9581e9f62 1040 admin extra bluez-obexd-dbgsym_5.37-0ubuntu5.3_s390x.ddeb ce17352260b84c1bac6c19d57c514a47 149568 admin optional bluez-obexd_5.37-0ubuntu5.3_s390x.deb 6c6a2e32c71768372d044ab2df92e1fa 932 admin extra bluez-tests-dbgsym_5.37-0ubuntu5.3_s390x.ddeb 22988598abd056938da15b042574dcc7 203988 admin optional bluez-tests_5.37-0ubuntu5.3_s390x.deb 2030296d8af3d5ceb90fbd50908c0d2e 814098 admin optional bluez_5.37-0ubuntu5.3_s390x.deb d2ceaea53d4114302941427e5441c1ba 888 libdevel extra libbluetooth-dev-dbgsym_5.37-0ubuntu5.3_s390x.ddeb d74d3725f512527b3e3e5559b53e80c5 142740 libdevel extra libbluetooth-dev_5.37-0ubuntu5.3_s390x.deb dd1306e9747c35868f0a8432c494e697 2984 debug extra libbluetooth3-dbg_5.37-0ubuntu5.3_s390x.deb 772b16614c05d9315a829721a7805361 896 libs extra libbluetooth3-dbgsym_5.37-0ubuntu5.3_s390x.ddeb c80d9f8b3eb410e837211b36c6518d15 56878 libs optional libbluetooth3_5.37-0ubuntu5.3_s390x.deb Original-Maintainer: Debian Bluetooth Maintainers