High severity8.8NVD Advisory· Published Mar 10, 2022· Updated Apr 15, 2026
CVE-2022-0204
CVE-2022-0204
Description
A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files causing an application to halt or crash, leading to a denial of service.
Affected products
3- cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
Patches
2da07239606d6591c546c536bhttps://github.com/bluez/bluezvia nvd-ref
Vulnerability mechanics
Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
6- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- github.com/bluez/bluez/commit/591c546c536b42bef696d027f64aa22434f8c3f0nvdPatchThird Party Advisory
- github.com/bluez/bluez/security/advisories/GHSA-479m-xcq5-9g2qnvdExploitThird Party Advisory
- lists.debian.org/debian-lts-announce/2022/10/msg00026.htmlnvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/202209-16nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2024/09/msg00022.htmlnvd
News mentions
0No linked articles in our index yet.