CVE-2022-42895

Severity CVSS v4.0:
Pending analysis
Type:
CWE-824 Access of Uninitialized Pointer
Publication date:
23/11/2022
Last modified:
07/11/2023

Description

There is an infoleak vulnerability in the Linux kernel&amp;#39;s net/bluetooth/l2cap_core.c&amp;#39;s l2cap_parse_conf_req function which can be used to leak kernel pointers remotely.<br /> We recommend upgrading past commit  https://github.com/torvalds/linux/commit/b1a2cd50c0357f243b7435a732b4e62ba3157a2e https://www.google.com/url <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*