In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt
This event is just specified for SCO and eSCO link types.
On the reception of a HCI_Synchronous_Connection_Complete for a BDADDR
of an existing LE connection, LE link type and a status that triggers the
second case of the packet processing a NULL pointer dereference happens,
as conn->link is NULL.
References
Configurations
Configuration 1 (hide)
|
History
13 Mar 2025, 21:30
Type | Values Removed | Values Added |
---|---|---|
First Time |
Linux linux Kernel
Linux |
|
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
CWE | CWE-476 | |
References | () https://git.kernel.org/stable/c/0f9db1209f59844839175b5b907d3778cafde93d - Patch | |
References | () https://git.kernel.org/stable/c/1c1291a84e94f6501644634c97544bb8291e9a1a - Patch | |
References | () https://git.kernel.org/stable/c/3afee2118132e93e5f6fa636dfde86201a860ab3 - Patch | |
References | () https://git.kernel.org/stable/c/c1aa0dd52db4ce888be0bd820c3fa918d350ca0b - Patch | |
References | () https://git.kernel.org/stable/c/f61c23e73dc653b957781066abfa8105c3fa3f5b - Patch | |
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
26 Feb 2025, 07:00
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-26 07:00
Updated : 2025-03-13 21:30
NVD link : CVE-2022-49139
Mitre link : CVE-2022-49139
CVE.ORG link : CVE-2022-49139
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-476
NULL Pointer Dereference