CVE-2022-42896 - log back

CVE-2022-42896 edited at 27 Feb 2023 23:28:52
Severity
- Unknown
+ High
CVE-2022-42896 created at 27 Feb 2023 23:28:28
Severity
+ Unknown
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ use-after-free in net/bluetooth/l2cap_core.c's l2cap_connect and l2cap_le_connect_req may allow code execution and leaking kernel memory (respectively) remotely via Bluetooth
References
+ https://github.com/torvalds/linux/commit/711f8c3fb3db61897080468586b970c87c61d9e4
+ https://kernel.dance/#CVE-2022-42896
Notes