Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-36032
HistoryMay 30, 2024 - 12:00 a.m.

CVE-2024-36032

2024-05-3000:00:00
ubuntu.com
ubuntu.com
5
linux
kernel
bluetooth
qca
info leak

AI Score

9.4

Confidence

High

EPSS

0

Percentile

15.5%

In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: qca: fix info leak when fetching fw build id Add the missing
sanity checks and move the 255-byte build-id buffer off the stack to avoid
leaking stack data through debugfs in case the build-info reply is
malformed.

AI Score

9.4

Confidence

High

EPSS

0

Percentile

15.5%