CVE-2022-3640

Updated: 2023-01-20 19:32:36.244381

Description:

A vulnerability, which was classified as critical, was found in Linux Kernel. Affected is the function l2cap_conn_del of the file net/bluetooth/l2cap_core.c of the component Bluetooth. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211944.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 8.8

Status

OS name Project name Version Score Severity Status Errata Last updated
CentOS 8.4 ELS kernel 4.18.0-305.25.1 8.8 HIGH Needs Triage 2022-11-30 10:36:03
CentOS 8.5 ELS kernel 4.18.0-348.7.1 8.8 HIGH Needs Triage 2022-11-30 10:36:10
Ubuntu 16.04 ELS linux-hwe 4.15.0 8.8 HIGH Released CLSA-2023:1677764911 2023-03-02 10:04:20
Ubuntu 16.04 ELS linux 4.4.0 8.8 HIGH Not Vulnerable 2023-03-06 07:41:06
Ubuntu 18.04 ELS linux 4.15.0 8.8 HIGH Needs Triage 2023-03-10 07:38:16