SB2024111024 - NULL pointer dereference in Linux kernel bluetooth
Published: November 10, 2024 Updated: May 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2024-50255)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to NULL pointer dereference within the __hci_cmd_sync_sk() and __hci_cmd_sync_status_sk() functions in net/bluetooth/hci_sync.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/5d9054b9f769a8e124c4fa02072437c864726baf
- https://git.kernel.org/stable/c/1f1764466c33a4466363b821a25cd65c46a5a793
- https://git.kernel.org/stable/c/48d7c24b7ef6417c68f206566364db1f8087bb23
- https://git.kernel.org/stable/c/1e67d8641813f1876a42eeb4f532487b8a7fb0a8
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.116
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.7
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.60