CVE-2022-45934: Integer Overflow
An integer wraparound in the function l2capconfigreq in net/bluetooth/l2capcore.c in Linux Kernel could allow a remote authenticated attacker from within the local network using L2CAPCONFREQ packets to cause an unknown impact.
Other sources
An issue was discovered in the Linux kernel through 6.0.10. l2capconfigreq in net/bluetooth/l2capcore.c has an integer wraparound via L2CAPCONFREQ packets.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45934?
CVE-2022-45934 has a medium severity rating due to its potential impact on the integrity of the system.
How do I fix CVE-2022-45934?
To fix CVE-2022-45934, upgrade to a patched version of the Linux kernel, such as 5.10.223-1 or later.
What systems are affected by CVE-2022-45934?
CVE-2022-45934 affects various versions of the Linux kernel, specifically versions prior to 6.0.11.
What kind of attack does CVE-2022-45934 facilitate?
CVE-2022-45934 can facilitate an integer overflow, potentially allowing for memory corruption.
Is CVE-2022-45934 related to Bluetooth security?
Yes, CVE-2022-45934 involves an issue in the Bluetooth stack of the Linux kernel.