Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2026-01541

Опубликовано: 14 янв. 2022
Источник: fstec
CVSS3: 5.5
CVSS2: 4.6
EPSS Низкий

Описание

Уязвимость функции hci_sync_conn_complete_evt() модуля net/bluetooth/hci_event.c подсистемы Bluetooth ядра операционной системы Linux связана с разыменованием указателей. Эксплуатация уязвимости может позволить нарушителю вызвать отказ в обслуживании

Вендор

Сообщество свободного программного обеспечения
Red Hat Inc.

Наименование ПО

Debian GNU/Linux
Red Hat Enterprise Linux
Linux

Версия ПО

11 (Debian GNU/Linux)
9 (Red Hat Enterprise Linux)
от 2.6.30 до 5.4.230 включительно (Linux)
от 5.5 до 5.10.166 включительно (Linux)
от 5.11 до 5.15.91 включительно (Linux)
от 5.16 до 5.17.2 включительно (Linux)

Тип ПО

Операционная система

Операционные системы и аппаратные платформы

Сообщество свободного программного обеспечения Debian GNU/Linux 11
Red Hat Inc. Red Hat Enterprise Linux 9
Сообщество свободного программного обеспечения Linux от 2.6.30 до 5.4.230 включительно
Сообщество свободного программного обеспечения Linux от 5.5 до 5.10.166 включительно
Сообщество свободного программного обеспечения Linux от 5.11 до 5.15.91 включительно
Сообщество свободного программного обеспечения Linux от 5.16 до 5.17.2 включительно

Уровень опасности уязвимости

Средний уровень опасности (базовая оценка CVSS 2.0 составляет 4,6)
Средний уровень опасности (базовая оценка CVSS 3.1 составляет 5,5)

Возможные меры по устранению уязвимости

В условиях отсутствия обновлений безопасности от производителя рекомендуется придерживаться "Рекомендаций по безопасной настройке операционных систем LINUX", изложенных в методическом документе ФСТЭК России, утверждённом 25 декабря 2022 года.
Использование рекомендаций:
Для Linux:
https://lore.kernel.org/linux-cve-announce/2025022607-CVE-2022-49139-66ce@gregkh/
https://git.kernel.org/linus/3afee2118132e93e5f6fa636dfde86201a860ab3
https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.231
https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.167
https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.92
https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.17.3
https://git.kernel.org/stable/c/f61c23e73dc653b957781066abfa8105c3fa3f5b
https://git.kernel.org/stable/c/0f9db1209f59844839175b5b907d3778cafde93d
https://git.kernel.org/stable/c/c1aa0dd52db4ce888be0bd820c3fa918d350ca0b
https://git.kernel.org/stable/c/1c1291a84e94f6501644634c97544bb8291e9a1a
Для Debian GNU/Linux:
https://security-tracker.debian.org/tracker/CVE-2022-49139
Для продуктов Red Hat Inc.:
https://access.redhat.com/security/cve/cve-2022-49139

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Данные уточняются

Информация об устранении

Уязвимость устранена

Идентификаторы других систем описаний уязвимостей

EPSS

Процентиль: 18%
0.00259
Низкий

5.5 Medium

CVSS3

4.6 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt This event is just specified for SCO and eSCO link types. On the reception of a HCI_Synchronous_Connection_Complete for a BDADDR of an existing LE connection, LE link type and a status that triggers the second case of the packet processing a NULL pointer dereference happens, as conn->link is NULL.

CVSS3: 5.5
redhat
больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt This event is just specified for SCO and eSCO link types. On the reception of a HCI_Synchronous_Connection_Complete for a BDADDR of an existing LE connection, LE link type and a status that triggers the second case of the packet processing a NULL pointer dereference happens, as conn->link is NULL.

CVSS3: 5.5
nvd
больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt This event is just specified for SCO and eSCO link types. On the reception of a HCI_Synchronous_Connection_Complete for a BDADDR of an existing LE connection, LE link type and a status that triggers the second case of the packet processing a NULL pointer dereference happens, as conn->link is NULL.

CVSS3: 5.5
debian
больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: B ...

suse-cvrf
около 1 года назад

Security update for the Linux Kernel

EPSS

Процентиль: 18%
0.00259
Низкий

5.5 Medium

CVSS3

4.6 Medium

CVSS2