GSD-2022-1003380

Source
https://data.gsd.id/GSD-2022-1003380
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1003xxx/GSD-2022-1003380.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2022-1003380
Published
2022-06-28T19:09:54.766584Z
Modified
2023-02-22T07:59:55.253833Z
Summary
Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout
Details

Bluetooth: fix dangling scoconn and use-after-free in scosock_timeout

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.15.46 by commit 65d347cb39e2e6bd0c2a745ad7c928998ebb0162, it was introduced in version v5.15 by commit e1dee2c1de2b4dd00eb44004a4bda6326ed07b59. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
e1dee2c1de2b4dd00eb44004a4bda6326ed07b59
Limit
65d347cb39e2e6bd0c2a745ad7c928998ebb0162

Affected versions

v5.*
v5.14
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.15.1
v5.15.10
v5.15.11
v5.15.12
v5.15.13
v5.15.14
v5.15.15
v5.15.16
v5.15.17
v5.15.18
v5.15.19
v5.15.2
v5.15.20
v5.15.21
v5.15.22
v5.15.23
v5.15.24
v5.15.25
v5.15.26
v5.15.27
v5.15.28
v5.15.29
v5.15.3
v5.15.30
v5.15.31
v5.15.32
v5.15.33
v5.15.34
v5.15.35
v5.15.36
v5.15.37
v5.15.38
v5.15.39
v5.15.4
v5.15.40
v5.15.41
v5.15.42
v5.15.43
v5.15.44
v5.15.45
v5.15.5
v5.15.6
v5.15.7
v5.15.8
v5.15.9

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1003xxx/GSD-2022-1003380.json"