Bug 1204426 (CVE-2022-3563) - VUL-0: CVE-2022-3563: bluez: null dereference in mgmt-tester
Summary: VUL-0: CVE-2022-3563: bluez: null dereference in mgmt-tester
Status: RESOLVED FIXED
Alias: CVE-2022-3563
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/345419/
Whiteboard: CVSSv3.1:SUSE:CVE-2022-3563:5.3:(AV:A...
Keywords:
Depends on:
Blocks:
 
Reported: 2022-10-18 09:26 UTC by Thomas Leroy
Modified: 2024-04-19 14:34 UTC (History)
4 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Thomas Leroy 2022-10-18 09:26:37 UTC
CVE-2022-3563

A vulnerability classified as problematic has been found in Linux Kernel.
Affected is the function read_50_controller_cap_complete of the file
tools/mgmt-tester.c of the component BlueZ. The manipulation of the argument
cap_len leads to null pointer dereference. It is recommended to apply a patch to
fix this issue. VDB-211086 is the identifier assigned to this vulnerability.

Upstream fix:
https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=e3c92f1f786f0b55440bd908b55894d0c792cf0e

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-3563
https://www.cve.org/CVERecord?id=CVE-2022-3563
https://vuldb.com/?id.211086
Comment 1 Thomas Leroy 2022-10-18 09:27:19 UTC
Only SUSE:SLE-15-SP4:Update is affected. 

openSUSE:Factory already up-to-date
Comment 4 Joey Lee 2023-01-18 07:52:49 UTC
(In reply to Thomas Leroy from comment #1)
> Only SUSE:SLE-15-SP4:Update is affected. 
> 
> openSUSE:Factory already up-to-date

I have sent submitreq to SUSE:SLE-15-SP4:Update/bluez

https://build.suse.de/request/show/288441
Comment 5 Swamp Workflow Management 2023-01-26 20:36:03 UTC
SUSE-SU-2023:0167-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1204426
CVE References: CVE-2022-3563
JIRA References: 
Sources used:
openSUSE Leap 15.4 (src):    bluez-5.62-150400.4.8.1
SUSE Linux Enterprise Workstation Extension 15-SP4 (src):    bluez-5.62-150400.4.8.1
SUSE Linux Enterprise Module for Desktop Applications 15-SP4 (src):    bluez-5.62-150400.4.8.1
SUSE Linux Enterprise Module for Basesystem 15-SP4 (src):    bluez-5.62-150400.4.8.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 6 Joey Lee 2023-03-30 06:12:31 UTC
(In reply to Joey Lee from comment #4)
> (In reply to Thomas Leroy from comment #1)
> > Only SUSE:SLE-15-SP4:Update is affected. 
> > 
> > openSUSE:Factory already up-to-date
> 
> I have sent submitreq to SUSE:SLE-15-SP4:Update/bluez
> 
> https://build.suse.de/request/show/288441

The patch be accepted. Reset assigner.
Comment 7 Robert Frohl 2024-04-19 14:34:47 UTC
done