CVE-2023-1902: HCI Connection Creation Dangling State Reference Re-use
The bluetooth HCI host layer logic not clearing a global reference to a state pointer after handling connection events may allow a malicious HCI Controller to cause the use of a dangling reference in the host layer, leading to a crash (DoS) or potential RCE on the Host layer.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-1902?
CVE-2023-1902 is a vulnerability in the bluetooth HCI host layer logic that may allow a malicious HCI Controller to cause a crash or potential RCE on the Host layer.
What is the severity of CVE-2023-1902?
CVE-2023-1902 has a severity level of high.
Which software versions are affected by CVE-2023-1902?
Zephyrproject Zephyr versions up to 3.3.0 are affected by CVE-2023-1902.
How can CVE-2023-1902 be fixed?
To fix CVE-2023-1902, it is recommended to update to a version of Zephyrproject Zephyr that is higher than 3.3.0.
Where can I find more information about CVE-2023-1902?
More information about CVE-2023-1902 can be found at the following link: [https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-fx9g-8fr2-q899]