PT-2022-5813 · Linux+9 · Linux Kernel+9

Luiz Augusto Von Dentz

+1

·

Published

2022-11-21

·

Updated

2024-12-19

·

CVE-2022-45934

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.10
Description The issue is related to an integer wraparound in the l2cap config req function in net/bluetooth/l2cap core.c, which can be exploited via L2CAP CONF REQ packets. This may allow an attacker to execute arbitrary code.
Recommendations For Linux kernel versions prior to 6.0.10, update to a version 6.0.10 or later to resolve the issue. As a temporary workaround, consider restricting access to the l2cap config req function in net/bluetooth/l2cap core.c to minimize the risk of exploitation.

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:2394
ALSA-2024:2950
ALSA-2024:3138
ALT-PU-2022-3364
ALT-PU-2022-3371
ALT-PU-2022-3394
ALT-PU-2022-3395
ALT-PU-2022-3417
ALT-PU-2023-1011
ALT-PU-2023-1044
ALT-PU-2023-1059
ALT-PU-2023-1061
ALT-PU-2023-1065
ALT-PU-2023-1066
ALT-PU-2023-1128
ALT-PU-2023-1378
ALT-PU-2023-4894
ALT-PU-2023-5844
ALT-PU-2023-7007
ALT-PU-2023-7682
AZL-11518
BDU:2022-07218
CESA-2024_2950
CESA-2024_3138
CVE-2022-45934
DLA-3349-1
DLA-3403-1
DSA-5324-1
INFSA-2024_2394
INFSA-2024_2950
INFSA-2024_3138
MGASA-2023-0007
MGASA-2023-0008
OESA-2022-2130
OESA-2022-2133
OESA-2022-2134
OPENSUSE-SU-2022_4503-1
OPENSUSE-SU-2022_4504-1
OPENSUSE-SU-2022_4574-1
OPENSUSE-SU-2022_4585-1
OPENSUSE-SU-2022_4613-1
OPENSUSE-SU-2022_4616-1
OPENSUSE-SU-2022_4617-1
OPENSUSE-SU-2024:12560-1
OPENSUSE-SU-2024:13704-1
OPENSUSE-SU-2024_3983-1
OPENSUSE-SU-2024_3985-1
OPENSUSE-SU-2024_4131-1
OPENSUSE-SU-2024_4140-1
RHSA-2024:2394
RHSA-2024:2950
RHSA-2024:3138
RHSA-2024_2394
RHSA-2024_2950
RHSA-2024_3138
RLSA-2024:2950
RLSA-2024:3138
SUSE-SU-2022:4503-1
SUSE-SU-2022:4504-1
SUSE-SU-2022:4505-1
SUSE-SU-2022:4561-1
SUSE-SU-2022:4566-1
SUSE-SU-2022:4573-1
SUSE-SU-2022:4574-1
SUSE-SU-2022:4585-1
SUSE-SU-2022:4589-1
SUSE-SU-2022:4611-1
SUSE-SU-2022:4613-1
SUSE-SU-2022:4614-1
SUSE-SU-2022:4615-1
SUSE-SU-2022:4616-1
SUSE-SU-2022:4617-1
SUSE-SU-2023:0416-1
SUSE-SU-2024:3983-1
SUSE-SU-2024:3985-1
SUSE-SU-2024:4081-1
SUSE-SU-2024:4082-1
SUSE-SU-2024:4103-1
SUSE-SU-2024:4131-1
SUSE-SU-2024:4140-1
SUSE-SU-2024:4364-1
USN-5794-1
USN-5802-1
USN-5803-1
USN-5804-1
USN-5804-2
USN-5808-1
USN-5809-1
USN-5813-1
USN-5814-1
USN-5829-1
USN-5830-1
USN-5831-1
USN-5832-1
USN-5858-1
USN-5860-1
USN-5861-1
USN-5863-1
USN-5875-1
USN-5877-1
USN-5879-1
USN-5914-1
USN-5918-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Rocky Linux
Suse
Ubuntu