In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its own lock This uses a mutex to protect from concurrent access of mgmt_pending …
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its own lock This uses a mutex to protect from concurrent access of mgmt_pending list which can cause crashes like: ================================================================== BUG: KASAN: slab-use-after-free in hci_sock_get_channel+0x60/0x68 net/bluetooth/hci_sock.c:91 Read of size 2 at addr ffff0000c48885b2 by task syz.4.334/7318 CPU: 0 UID: 0 PID: 7318 Comm: syz.4.334…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/4e83f2dbb2bf677e614109df24426c4dded472d4 Patch
- https://git.kernel.org/stable/c/6fe26f694c824b8a4dbf50c635bee1302e3f099c Patch
- https://git.kernel.org/stable/c/bdd56875c6926d8009914f427df71797693e90d4 Patch
- https://git.kernel.org/stable/c/d7882db79135c829a922daf3571f33ea1e056ae3 Patch
Timeline
- nvd_ingest NVD