Unity Linux 20.1070e Security Update: kernel (UTSA-2026-003416)

high Nessus Plugin ID 287837

Synopsis

The Unity Linux host is missing one or more security updates.

Description

The Unity Linux 20 host has a package installed that is affected by a vulnerability as referenced in the UTSA-2026-003416 advisory.

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.

Tenable has extracted the preceding description block directly from the Unity Linux security advisory.

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Update the affected kernel package.

See Also

http://www.nessus.org/u?f027b254

http://nvidia.custhelp.com/app/answers/detail/a_id/4561

http://www.debian.org/security/2017/dsa-3981

http://www.securityfocus.com/bid/100809

http://www.securitytracker.com/id/1039373

https://access.redhat.com/errata/RHSA-2017:2679

https://access.redhat.com/errata/RHSA-2017:2680

https://access.redhat.com/errata/RHSA-2017:2681

https://access.redhat.com/errata/RHSA-2017:2682

https://access.redhat.com/errata/RHSA-2017:2683

https://access.redhat.com/errata/RHSA-2017:2704

https://access.redhat.com/errata/RHSA-2017:2705

https://access.redhat.com/errata/RHSA-2017:2706

https://access.redhat.com/errata/RHSA-2017:2707

https://access.redhat.com/errata/RHSA-2017:2731

https://access.redhat.com/errata/RHSA-2017:2732

https://access.redhat.com/security/vulnerabilities/blueborne

http://www.nessus.org/u?d9fabc83

https://security-tracker.debian.org/tracker/CVE-2017-1000251

https://www.armis.com/blueborne

https://www.exploit-db.com/exploits/42762/

https://www.kb.cert.org/vuls/id/240311

https://www.synology.com/support/security/Synology_SA_17_52_BlueBorne

Plugin Details

Severity: High

ID: 287837

File Name: unity_linux_UTSA-2026-003416.nasl

Version: 1.1

Type: local

Published: 1/15/2026

Updated: 1/15/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: High

Base Score: 7.7

Temporal Score: 6

Vector: CVSS2#AV:A/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2017-1000251

CVSS v3

Risk Factor: High

Base Score: 8

Temporal Score: 7.2

Vector: CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

Required KB Items: Host/local_checks_enabled, Host/UOS-Server/release, Host/UOS-Server/rpm-list, Host/cpu

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 1/15/2026

Vulnerability Publication Date: 9/12/2017

Reference Information

CVE: CVE-2017-1000251