In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix uaf in l2cap_connect [Syzbot reported] BUG: KASAN: slab-use-after-free in l2cap_connect.constprop.0+0x10d8/…
High CVSS 8.8
Summary
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix uaf in l2cap_connect [Syzbot reported] BUG: KASAN: slab-use-after-free in l2cap_connect.constprop.0+0x10d8/0x1270 net/bluetooth/l2cap_core.c:3949 Read of size 8 at addr ffff8880241e9800 by task kworker/u9:0/54 CPU: 0 UID: 0 PID: 54 Comm: kworker/u9:0 Not tainted 6.11.0-rc6-syzkaller-00268-g788220eee30d #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 08/06/2024 Workqueue…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/333b4fd11e89b29c84c269123f871883a30be586 Patch
- https://git.kernel.org/stable/c/686e05c9dbd68766c6bda5f31f7e077f36a7fb29 Patch
- https://git.kernel.org/stable/c/78d30ce16fdf9c301bcd8b83ce613cea079cea83 Patch
- https://git.kernel.org/stable/c/a1c6174e23df10b8e5770e82d63bc6e2118a3dc7 Patch
- https://git.kernel.org/stable/c/b22346eec479a30bfa4a02ad2c551b54809694d0 Patch
- https://git.kernel.org/stable/c/b90907696c30172b809aa3dd2f0caffae761e4c6 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html Mailing List
Timeline
- nvd_ingest NVD