#VU69795 Use-after-free in Linux kernel - CVE-2022-42896
Published: December 1, 2022
Linux kernel
Linux Foundation
Description
The vulnerability allows an attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error within the l2cap_connect() and l2cap_le_connect_req() function in net/bluetooth/l2cap_core.c. An attacker with physical proximity to the affected device can trigger a use-after-free error and execute arbitrary code on the system.