There is an infoleak vulnerability in the Linux kernel's net/bluetooth/l2capcore.c's l2capparseconfreq function which can be used to leak kernel pointers remotely. We recommend upgrading past commit https://github.com/torvalds/linux/commit/b1a2cd50c0357f243b7435a732b4e62ba3157a2e https://www.google.com/url
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-42895.json"
[
{
"id": "CVE-2022-42895-00aacc71",
"target": {
"function": "l2cap_parse_conf_req",
"file": "net/bluetooth/l2cap_core.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/b1a2cd50c0357f243b7435a732b4e62ba3157a2e",
"digest": {
"function_hash": "312950394021314404204033801884077872730",
"length": 4999.0
},
"signature_type": "Function"
},
{
"id": "CVE-2022-42895-fc48aa3a",
"target": {
"file": "net/bluetooth/l2cap_core.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/b1a2cd50c0357f243b7435a732b4e62ba3157a2e",
"digest": {
"threshold": 0.9,
"line_hashes": [
"244603543294627378484617538459557182768",
"143579178046456530703971570785194041712",
"131077577719616833690617926296467568245",
"79732846244420361730980025901579002867"
]
},
"signature_type": "Line"
}
]