Описание
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| linux | fixed | 6.6.15-1 | package | |
| linux | fixed | 6.1.76-1 | bookworm | package |
| linux | fixed | 5.10.209-1 | bullseye | package |
| linux | not-affected | buster | package |
Примечания
https://bugzilla.openanolis.cn/show_bug.cgi?id=8151
https://git.kernel.org/linus/da9065caa594d19b26e1a030fd0cc27bd365d685 (6.8-rc1)
Связанные уязвимости
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
Race condition vulnerability in Linux kernel bluetooth driver in {minmax}_key_size_set()
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
Уязвимость реализации протокола HCI драйвера bluetooth ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании