Wind River Support Network

HomeDefectsLIN1021-4552
Fixed

LIN1021-4552 : Security Advisory - bluez5 - CVE-2022-3563

Created: Oct 17, 2022    Updated: Nov 5, 2022
Resolved Date: Nov 5, 2022
Found In Version: 10.21.20.1
Fix Version: 10.21.20.15
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A vulnerability classified as problematic has been found in Linux Kernel. Affected is the function read_50_controller_cap_complete of the file tools/mgmt-tester.c of the component BlueZ. The manipulation of the argument cap_len leads to null pointer dereference. It is recommended to apply a patch to fix this issue. VDB-211086 is the identifier assigned to this vulnerability.

CREATE(Triage):(User=admin) CVE-2022-3563 (https://nvd.nist.gov/vuln/detail/CVE-2022-3563)

CVEs


Live chat
Online