#VU71644 NULL pointer dereference in Linux kernel - CVE-2022-3563
Published: January 30, 2023
Linux kernel
Linux Foundation
Description
The vulnerability allows an attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error within the read_50_controller_cap_complete() function in tools/mgmt-tester.c of the component BlueZ. An attacker with physical proximity to device can send specially crafted data to the application and perform a denial of service (DoS) attack.