CVE-2024-35978 - Deep Dive into a Bluetooth Memory Leak in Linux Kernel’s hci_req_sync_complete() (With Exploit Details)
Recently, a vulnerability tracked as CVE-2024-35978 was identified and patched in the Linux kernel, particularly affecting the Bluetooth subsystem. This flaw was caused by a
CVE-2024-35933 - Easy Guide to the Linux Kernel Bluetooth Null Pointer Dereference Vulnerability
If you use Linux and Bluetooth, there’s a new security vulnerability you need to know about: CVE-2024-35933. This long-read post breaks down what the
CVE-2024-27399 - Null Pointer Dereference Race in Linux Bluetooth l2cap_chan_timeout (Explained for Everyone)
- [Code Snippets/Diff](#code)
[Summary for Users](#summary)
What is CVE-2024-27399?
CVE-2024-27399 is a recently fixed vulnerability in the Linux kernel's Bluetooth
CVE-2024-27398 - Use-After-Free Vulnerability in Linux Kernel Bluetooth (sco_sock_timeout) – Explained and Exploited
In early 2024, a serious use-after-free bug was found and fixed in the Linux kernel’s Bluetooth stack, specifically in the SCO (Synchronous Connection Oriented
CVE-2021-34981 - Linux Kernel Bluetooth CMTP Module Double Free Privilege Escalation Vulnerability Explained
In July 2021, a new high-severity Linux kernel vulnerability came to light as CVE-2021-34981 (also tracked as ZDI-CAN-11977). This vulnerability affects the Bluetooth CMTP (CAPI
Episode
00:00:00
00:00:00