CVE-2022-49470

Bluetooth: btmtksdio: fix use-after-free at btmtksdio_recv_event

References

Notes

 carnil> Introduced in 9aebfd4a2200 ("Bluetooth: mediatek: add support for MediaTek
 carnil> MT7663S and MT7668S SDIO devices"). Vulnerable versions: 5.2-rc1.

Bugs

Status

Branch Status
upstream released (5.19-rc1) [0fab6361c4ba17d1b43a991bef4238a3c1754d35]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.6-upstream-stable N/A "Fixed before branching point"
6.1-upstream-stable N/A "Fixed before branching point"
5.10-upstream-stable needed
sid released (5.18.5-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security N/A "Fixed before branching point"
5.10-bullseye-security needed