Lucene search

K
redhatcveRedhat.comRH:CVE-2022-3563
HistoryDec 05, 2022 - 8:01 p.m.

CVE-2022-3563

2022-12-0520:01:14
redhat.com
access.redhat.com
17
bluez
vulnerability
null pointer
manipulation
cap_len
component

CVSS3

5.7

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.6%

A vulnerability has been found in BlueZ. This issue affects the read_50_controller_cap_complete function of the tools/mgmt-tester.c file in the BlueZ component. A manipulation of the cap_len argument leads to null pointer dereference.

CVSS3

5.7

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.6%