Tracker / CVE-2022-50374
CVE-2022-50374
Medium 5.5
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_{ldisc,serdev}: check percpu_init_rwsem() failure syzbot is reporting NULL pointer dereference at hci_uart_tty_close() [1], for rcu_sync_enter() is called without rcu_sync_init() due to hci_uart_tty_open() ignoring percpu_init_rwsem() failure. While we are at it, fix that hci_uart_register_device() ignores percpu_init_rwsem() failure and hci_uart_unregister_device() does not call percpu_free_rwsem().
Affected products and versions
| linux | linux_kernel · 4.14.63 → 4.15 |
|---|---|
| linux | linux_kernel · 4.14.63 → 5.10.150 |
| linux | linux_kernel · 5.11 → 5.15.75 |
| linux | linux_kernel · 5.16 → 5.19.17 |
| linux | linux_kernel · 6.0 → 6.0.3 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.