The hidp_setup_hid function in net/bluetooth/hidp/core.c...
Low severity
Unreviewed
Published
May 5, 2022
to the GitHub Advisory Database
•
Updated Feb 21, 2023
Description
Published by the National Vulnerability Database
Feb 28, 2013
Published to the GitHub Advisory Database
May 5, 2022
Last updated
Feb 21, 2023
The hidp_setup_hid function in net/bluetooth/hidp/core.c in the Linux kernel before 3.7.6 does not properly copy a certain name field, which allows local users to obtain sensitive information from kernel memory by setting a long name and making an HIDPCONNADD ioctl call.
References