An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an integer wraparound via L2CAP_CONF_REQ packets.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-11518.json"