CVE-2022-3563: Linux Kernel BlueZ mgmt-tester.c read_50_controller_cap_complete null pointer dereference
A vulnerability classified as problematic has been found in Linux Kernel. Affected is the function read50controllercapcomplete of the file tools/mgmt-tester.c of the component BlueZ. The manipulation of the argument caplen leads to null pointer dereference. It is recommended to apply a patch to fix this issue. VDB-211086 is the identifier assigned to this vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-3563.
What is the severity of CVE-2022-3563?
The severity of CVE-2022-3563 is medium with a severity value of 5.7.
Which component of BlueZ is affected by CVE-2022-3563?
The function read_50_controller_cap_complete of the file tools/mgmt-tester.c of BlueZ is affected by CVE-2022-3563.
What is the recommended action for CVE-2022-3563?
It is recommended to apply a patch to address CVE-2022-3563.
Where can I find more information about CVE-2022-3563?
You can find more information about CVE-2022-3563 at the following references: [1](https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=e3c92f1f786f0b55440bd908b55894d0c792cf0e) [2](https://vuldb.com/?id.211086)