CVE-2006-6908
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2006
Last modified:
09/04/2025
Description
Buffer overflow in the Bluetooth Stack COM Server in the Widcomm Bluetooth stack, as packaged as Widcomm Stack 3.x and earlier on Windows, Widcomm BTStackServer 1.4.2.10 and 1.3.2.7 on Windows, Widcomm Bluetooth Communication Software 1.4.1.03 on Windows, and the Bluetooth implementation in Windows Mobile or Windows CE on the HP IPAQ 2215 and 5450, allows remote attackers to cause a denial of service (service crash) and possibly execute arbitrary code via unspecified vectors.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:broadcom:widcomm_bluetooth:1.4.1.03:*:windows:*:*:*:*:* | ||
cpe:2.3:a:broadcom:widcomm_bluetooth:*:*:windows:*:*:*:*:* | 3 (including) | |
cpe:2.3:o:broadcom:widcomm_bluetooth:1.3.2.7:*:windows:*:*:*:*:* | ||
cpe:2.3:o:broadcom:widcomm_bluetooth:1.4.2.10:*:windows:*:*:*:*:* | ||
cpe:2.3:o:microsoft:windows_embedded_compact:*:*:*:*:*:*:*:* | ||
cpe:2.3:o:microsoft:windows_mobile:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://events.ccc.de/congress/2006-mediawiki//images/f/fb/23c3_Bluetooh_revisited.pdf
- http://osvdb.org/37587
- http://www.securityfocus.com/archive/1/455889/100/0/threaded
- http://events.ccc.de/congress/2006-mediawiki//images/f/fb/23c3_Bluetooh_revisited.pdf
- http://osvdb.org/37587
- http://www.securityfocus.com/archive/1/455889/100/0/threaded