In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_event: Fix handling of HCI_EV_IO_CAPA_REQUEST
If we received HCI_EV_IO_CAPA_REQUEST while
HCI_OP_READ_REMOTE_EXT_FEATURES is yet to be responded assume the remote
does support SSP since otherwise this event shouldn’t be generated.
[
{
"product": "Linux",
"vendor": "Linux",
"defaultStatus": "unaffected",
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"programFiles": [
"net/bluetooth/hci_event.c"
],
"versions": [
{
"version": "ccb8618c972f",
"lessThan": "afec8f772296",
"status": "affected",
"versionType": "git"
},
{
"version": "1769ac55dbf3",
"lessThan": "79820a7e1e05",
"status": "affected",
"versionType": "git"
},
{
"version": "40a33a129d99",
"lessThan": "df193568d612",
"status": "affected",
"versionType": "git"
},
{
"version": "1ef071526848",
"lessThan": "c3df637266df",
"status": "affected",
"versionType": "git"
},
{
"version": "25e5d2883002",
"lessThan": "30a5e812f78e",
"status": "affected",
"versionType": "git"
},
{
"version": "c7f59461f5a7",
"lessThan": "fba268ac36ab",
"status": "affected",
"versionType": "git"
},
{
"version": "c7f59461f5a7",
"lessThan": "8e2758cc2589",
"status": "affected",
"versionType": "git"
},
{
"version": "c7f59461f5a7",
"lessThan": "7e74aa53a68b",
"status": "affected",
"versionType": "git"
}
]
},
{
"product": "Linux",
"vendor": "Linux",
"defaultStatus": "affected",
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"programFiles": [
"net/bluetooth/hci_event.c"
],
"versions": [
{
"version": "6.6",
"status": "affected"
},
{
"version": "0",
"lessThan": "6.6",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "4.19.309",
"lessThanOrEqual": "4.19.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.4.271",
"lessThanOrEqual": "5.4.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.10.212",
"lessThanOrEqual": "5.10.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.15.151",
"lessThanOrEqual": "5.15.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.1.81",
"lessThanOrEqual": "6.1.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.6.21",
"lessThanOrEqual": "6.6.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.7.9",
"lessThanOrEqual": "6.7.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.8",
"lessThanOrEqual": "*",
"status": "unaffected",
"versionType": "original_commit_for_fix"
}
]
}
]
git.kernel.org/stable/c/30a5e812f78e3d1cced90e1ed750bf027599205f
git.kernel.org/stable/c/79820a7e1e057120c49be07cbe10643d0706b259
git.kernel.org/stable/c/7e74aa53a68bf60f6019bd5d9a9a1406ec4d4865
git.kernel.org/stable/c/8e2758cc25891d2b76717aaf89b40ed215de188c
git.kernel.org/stable/c/afec8f772296dd8e5a2a6f83bbf99db1b9ca877f
git.kernel.org/stable/c/c3df637266df29edee85e94cab5fd7041e5753ba
git.kernel.org/stable/c/df193568d61234c81de7ed4d540c01975de60277
git.kernel.org/stable/c/fba268ac36ab19f9763ff90d276cde0ce6cd5f31
lists.debian.org/debian-lts-announce/2024/06/msg00017.html
lists.debian.org/debian-lts-announce/2024/06/msg00020.html