Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix potential use-after-free when clear keys Similar to commit c5d2b6fa26b5 ("Bluetooth: Fix use-after-free in hci_remove_ltk/hci_remove_irk"). We can not access k after kfree_rcu() call.
Product status
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before e87da6a0ac6e631454e7da53a76aa9fe44aaa5dd
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 942d8cefb022f384d5424f8b90c7878f3f93726f
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 94617b736c25091b60e514e2e7aeafcbbee6b700
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before da19f35868dfbecfff4f81166c054d2656cb1be4
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 35cc42f04bc49f0656f6840cb7451b3df6049649
d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 3673952cf0c6cf81b06c66a0b788abeeb02ff3ae
5.7
Any version before 5.7
5.10.195 (semver)
5.15.132 (semver)
6.1.53 (semver)
6.4.16 (semver)
6.5.3 (semver)
6.6 (original_commit_for_fix)
References
git.kernel.org/...c/e87da6a0ac6e631454e7da53a76aa9fe44aaa5dd
git.kernel.org/...c/942d8cefb022f384d5424f8b90c7878f3f93726f
git.kernel.org/...c/94617b736c25091b60e514e2e7aeafcbbee6b700
git.kernel.org/...c/da19f35868dfbecfff4f81166c054d2656cb1be4
git.kernel.org/...c/35cc42f04bc49f0656f6840cb7451b3df6049649
git.kernel.org/...c/3673952cf0c6cf81b06c66a0b788abeeb02ff3ae