CVE-2024-35963

Source
https://cve.org/CVERecord?id=CVE-2024-35963
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35963.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-35963
Downstream
Related
Published
2024-05-20T09:41:53.861Z
Modified
2026-05-28T03:54:57.525669649Z
Summary
Bluetooth: hci_sock: Fix not validating setsockopt user input
Details

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: hci_sock: Fix not validating setsockopt user input

Check user input length before copying data.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/35xxx/CVE-2024-35963.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
09572fca7223bcf32c9f0d5e100d8381a81d55f4
Fixed
781f3a97a38a338bc893b6db7f9f9670bf1a9e37
Fixed
0c18a64039aa3f1c16f208d197c65076da798137
Fixed
50173882bb187e70e37bac01385b9b114019bee2
Fixed
b2186061d6043d6345a97100460363e990af0d46

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35963.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.113
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.55
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.8.7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35963.json"