A vulnerability classified as critical was found in Linux Kernel. Affected by this vulnerability is the function l2cap_reassemble_sdu of the file net/bluetooth/l2cap_core.c of the component Bluetooth. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-211087.
References
Link | Resource |
---|---|
https://git.kernel.org/pub/scm/linux/kernel/git/bluetooth/bluetooth-next.git/commit/?id=89f9f3cb86b1c63badaf392a83dd661d56cc50b1 | Patch |
https://lists.debian.org/debian-lts-announce/2022/12/msg00031.html | Mailing List Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2022/12/msg00034.html | Mailing List Third Party Advisory |
https://security.netapp.com/advisory/ntap-20221223-0001/ | Third Party Advisory |
https://vuldb.com/?id.211087 | Third Party Advisory |
https://git.kernel.org/pub/scm/linux/kernel/git/bluetooth/bluetooth-next.git/commit/?id=89f9f3cb86b1c63badaf392a83dd661d56cc50b1 | Patch |
https://lists.debian.org/debian-lts-announce/2022/12/msg00031.html | Mailing List Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2022/12/msg00034.html | Mailing List Third Party Advisory |
https://security.netapp.com/advisory/ntap-20221223-0001/ | Third Party Advisory |
https://vuldb.com/?id.211087 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
History
21 Nov 2024, 07:19
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
References | () https://git.kernel.org/pub/scm/linux/kernel/git/bluetooth/bluetooth-next.git/commit/?id=89f9f3cb86b1c63badaf392a83dd661d56cc50b1 - Patch | |
References | () https://lists.debian.org/debian-lts-announce/2022/12/msg00031.html - Mailing List, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2022/12/msg00034.html - Mailing List, Third Party Advisory | |
References | () https://security.netapp.com/advisory/ntap-20221223-0001/ - Third Party Advisory | |
References | () https://vuldb.com/?id.211087 - Third Party Advisory |
04 Aug 2023, 17:50
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
21 Jul 2023, 21:03
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-416 |
CWE-362 |
23 Feb 2023, 15:32
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h500s:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h410s:-:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:netapp:h410s_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h700s:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:* |
|
References | (CONFIRM) https://security.netapp.com/advisory/ntap-20221223-0001/ - Third Party Advisory | |
References | (MISC) https://vuldb.com/?id.211087 - Third Party Advisory | |
References | (MLIST) https://lists.debian.org/debian-lts-announce/2022/12/msg00031.html - Mailing List, Third Party Advisory | |
References | (MLIST) https://lists.debian.org/debian-lts-announce/2022/12/msg00034.html - Mailing List, Third Party Advisory |
24 Dec 2022, 01:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
22 Dec 2022, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-119 | |
References |
|
13 Dec 2022, 18:31
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.1 |
20 Oct 2022, 12:48
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-416 | |
CPE | cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | |
References | (MISC) https://git.kernel.org/pub/scm/linux/kernel/git/bluetooth/bluetooth-next.git/commit/?id=89f9f3cb86b1c63badaf392a83dd661d56cc50b1 - Patch, Third Party Advisory | |
References | (MISC) https://vuldb.com/?id.211087 - Permissions Required | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.0 |
17 Oct 2022, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-10-17 19:15
Updated : 2024-11-21 07:19
NVD link : CVE-2022-3564
Mitre link : CVE-2022-3564
CVE.ORG link : CVE-2022-3564
JSON object : View
Products Affected
netapp
- h700s_firmware
- h300s_firmware
- h300s
- h500s
- h410s
- h500s_firmware
- h410s_firmware
- h700s
debian
- debian_linux
linux
- linux_kernel