Wind River Support Network

HomeDefectsLIN1021-12619
Fixed

LIN1021-12619 : Security Advisory - linux - CVE-2024-53144

Created: Dec 17, 2024    Updated: May 26, 2025
Resolved Date: May 21, 2025
Found In Version: 10.21.20.1
Fix Version: 10.21.20.25
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LE

This aligned BR/EDR JUST_WORKS method with LE which since 92516cd97fd4
("Bluetooth: Always request for user confirmation for Just Works")
always request user confirmation with confirm_hint set since the
likes of bluetoothd have dedicated policy around JUST_WORKS method
(e.g. main.conf:JustWorksRepairing).

CVE: CVE-2024-8805


CREATE(Triage):(User=admin) CVE-2024-53144 (https://nvd.nist.gov/vuln/detail/CVE-2024-53144)

CVEs


Live chat
Online