APPLIED[J, HWE-5.17, F]: [SRU Bionic/Focal/OEM-5.14/Jammy/HWE-5.17/Kinetic 0/1] CVE-2022-45934

Stefan Bader stefan.bader at canonical.com
Fri Dec 16 14:31:15 UTC 2022


On 10.12.22 04:21, Cengiz Can wrote:
> [Impact]
> An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in
> net/bluetooth/l2cap_core.c has an integer wraparound via L2CAP_CONF_REQ packets.
> 
> [Fix]
> Picked from upstream. Clean cherry picks to all.
> 
> [Test case]
> Compile, boot and basic functionality tested with l2test.
> 
> [Potential regression]
> Low. Fix only adds an overflow check.
> 
> Sungwoo Kim (1):
>    Bluetooth: L2CAP: Fix u8 overflow
> 
>   net/bluetooth/l2cap_core.c | 3 ++-
>   1 file changed, 2 insertions(+), 1 deletion(-)
> 

Applied to jammy,focal:linux/master-next and jammy:linux-hwe-5.17/hwe-5.17-next. 
Thanks.

-Stefan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20221216/c64855d4/attachment.sig>


More information about the kernel-team mailing list