DSA-4847-1 connman -- security update

Related Vulnerabilities: CVE-2021-26675   CVE-2021-26676  

A remote information leak vulnerability and a remote buffer overflow vulnerability were discovered in ConnMan, a network manager for embedded devices, which could result in denial of service or the execution of arbitrary code. For the stable distribution (buster), these problems have been fixed in version 1.36-2.1~deb10u1. We recommend that you upgrade your connman packages. For the detailed security status of connman please refer to its security tracker page at: https://security-tracker.debian.org/tracker/connman

Debian Security Advisory

DSA-4847-1 connman -- security update

Date Reported:
08 Feb 2021
Affected Packages:
connman
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2021-26675, CVE-2021-26676.
More information:

A remote information leak vulnerability and a remote buffer overflow vulnerability were discovered in ConnMan, a network manager for embedded devices, which could result in denial of service or the execution of arbitrary code.

For the stable distribution (buster), these problems have been fixed in version 1.36-2.1~deb10u1.

We recommend that you upgrade your connman packages.

For the detailed security status of connman please refer to its security tracker page at: https://security-tracker.debian.org/tracker/connman