In the Linux kernel, the following vulnerability has been resolved:Bluetooth: MGMT: Fix slab-use-after-free Read in set_powered_syncThis fixes the following crash:==================================================================BUG: KASAN: slab-use-after-free in set_powered_sync+0x3a/0xc0 net/bluetooth/mgmt.c:1353Read of size 8 at addr ffff888029b4dd18 by task kworker/u9:0/54CPU: 1 UID: 0 PID: 54 Comm: kworker/u9:0 Not tainted 6.11.0-rc6-syzkaller-01155-gf723224742fc #0Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 08/06/2024Workqueue: hci0 hci_cmd_sync_workCall Trace:
No PoCs from references.
- https://github.com/cku-heise/euvd-api-doc
- https://github.com/w4zu/Debian_security