CVE-2023-28866

CVSS v3.1 5.3 (Medium)
53% Progress
EPSS 0.07 % (31th)
0.07% Progress
Affected Products 1
Advisories 7

In the Linux kernel through 6.2.8, net/bluetooth/hci_sync.c allows out-of-bounds access because amp_init1[] and amp_init2[] are supposed to have an intentionally invalid element, but do not.

Weaknesses
CWE-125
Out-of-bounds Read
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2023-03-27 01:15:07
(17 months ago)
Updated Date
2023-11-07 04:10:55
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 6.2.8 and prior versions cpe:2.3:o:linux:linux_kernel <= 6.2.8
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...