CVE-2022-3563

NameCVE-2022-3563
DescriptionA vulnerability classified as problematic has been found in Linux Kernel. Affected is the function read_50_controller_cap_complete of the file tools/mgmt-tester.c of the component BlueZ. The manipulation of the argument cap_len leads to null pointer dereference. It is recommended to apply a patch to fix this issue. VDB-211086 is the identifier assigned to this vulnerability.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
bluez (PTS)jessie, jessie (lts)5.43-2+deb9u2~deb8u6fixed
stretch (security)5.43-2+deb9u5fixed
stretch (lts), stretch5.43-2+deb9u8fixed
buster, buster (lts)5.50-1.2~deb10u6fixed
buster (security)5.50-1.2~deb10u5fixed
bullseye5.55-3.1+deb11u1fixed
bullseye (security)5.55-3.1+deb11u2fixed
bookworm5.66-1+deb12u2fixed
bookworm (security)5.66-1+deb12u1fixed
sid, trixie5.77-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
bluezsourcejessie(not affected)
bluezsourcestretch(not affected)
bluezsourcebuster(not affected)
bluezsourcebullseye(not affected)
bluezsource(unstable)5.65-1

Notes

[bullseye] - bluez <not-affected> (Vulnerable code introduced later)
[buster] - bluez <not-affected> (Vulnerable code introduced later)
Fixed by: https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=e3c92f1f786f0b55440bd908b55894d0c792cf0e (5.65)
Introduced by: https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=bc3a76f01f461db19381f1922cdaeac222dfd374 (5.56)
[stretch] - bluez <not-affected> (Vulnerable code introduced later)
[jessie] - bluez <not-affected> (Vulnerable code introduced later)

Search for package or bug name: Reporting problems