Uploaded image for project: 'Funtoo Linux'
  1. Funtoo Linux
  2. FL-10781

debian-sources - CVE-2022-42895 CVE-2022-42896

    • Icon: Security Vulnerability Security Vulnerability
    • Resolution: Fixed
    • Icon: Normal Normal
    • None
    • None
    • None
    • security debian kernel

      [medium] CVE-2022-42895:

      There is an infoleak vulnerability in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_parse_conf_req function which can be used to leak kernel pointers remotely.

      [high] CVE-2022-42896:

      There are use-after-free vulnerabilities in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_connect and l2cap_le_connect_req functions which may allow code execution and leaking kernel memory (respectively) remotely via Bluetooth.

            Unassigned Unassigned
            mrl5 mrl5
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: