6.5
CVSSv3

CVE-2019-3460

Published: 11/04/2019 Updated: 07/11/2023
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 294
Vector: AV:A/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel prior to 5.1-rc1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

canonical ubuntu linux 16.04

canonical ubuntu linux 14.04

canonical ubuntu linux 18.04

canonical ubuntu linux 18.10

debian debian linux 8.0

redhat enterprise linux desktop 7.0

redhat enterprise linux workstation 7.0

redhat enterprise linux server 7.0

redhat enterprise linux for real time 7

redhat enterprise linux for real time for nfv 7

redhat virtualization host 4.0

redhat enterprise linux 8.0

redhat enterprise linux eus 8.1

redhat enterprise linux eus 8.2

redhat enterprise linux server tus 8.2

redhat enterprise linux server aus 8.2

redhat enterprise linux for real time 8

redhat enterprise linux server tus 8.4

redhat enterprise linux eus 8.4

redhat enterprise linux for real time for nfv tus 8.4

redhat enterprise linux for real time for nfv tus 8.2

redhat enterprise linux for real time tus 8.4

redhat enterprise linux for real time tus 8.2

redhat enterprise linux server aus 8.4

redhat enterprise linux for real time for nfv 8

redhat codeready linux builder 8.0

Vendor Advisories

Synopsis Important: kernel-alt security and bug fix update Type/Severity Security Advisory: Important Topic An update for kernel-alt is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System ...
Synopsis Important: kernel-rt security and bug fix update Type/Severity Security Advisory: Important Topic An update for kernel-rt is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (C ...
Synopsis Important: kernel security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for kernel is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring S ...
Synopsis Important: kernel security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for kernel is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring S ...
Synopsis Important: kernel-rt security and bug fix update Type/Severity Security Advisory: Important Topic An update for kernel-rt is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (C ...
A flaw was found in the Linux kernel's implementation of logical link control and adaptation protocol (L2CAP), part of the Bluetooth stack in the l2cap_parse_conf_rsp and l2cap_parse_conf_req functions An attacker with physical access within the range of standard Bluetooth transmission can create a specially crafted packet The response to this sp ...
A flaw was found in the Linux kernel's implementation of logical link control and adaptation protocol (L2CAP), part of the Bluetooth stack in the l2cap_parse_conf_rsp and l2cap_parse_conf_req functions An attacker with physical access within the range of standard Bluetooth transmission can create a specially crafted packet The response to this sp ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Impact: Moderate Public Date: 2019-01-11 CWE: CWE-200 Bugzilla: 1663179: CVE-2019-3460 kernel: Heap add ...
In the function l2cap_get_conf_opt (l2cap_corec), which is used to parse configuration elements during an L2cap connection negotiation process In this function, there is a "dual use" for the output parameter "val" If the length of the data is 1,2 or 4, then the returned value Is a value copied from an input buffer (received over BT) and returne ...

Mailing Lists

Hi Sasha, Thank you for posting this application Are you also on security@ko? If so, then on one hand also being on linux-distros would probably be of less use to you since I suspect most of the issues relevant to Microsoft are in the Linux kernel, but on the other hand you could serve as a liaison to that group On Wed, Jun 26, 2019 at 10:13 ...
On Thu, Jun 27, 2019 at 04:03:21PM +0200, Solar Designer wrote: Since Ubuntu took over quite a few tasks (thanks!), I can suggest the following tasks for Microsoft: As primary, administrative: "4 Evaluate relevance to other parties such as the upstream, other affected distros (not present on the (sub-)list), and other Open Source projects, " ...
On Thu, Jun 27, 2019 at 04:03:21PM +0200, Solar Designer wrote: I'm not a member of security@ko, but that list isn't what we're looking for We've talked about this with Greg before sending this application, and he has pointed out that security@ko is not a disclosure list, but rather just a way to pull in kernel folks to fix issues Some (most? ...
On Thu, Jun 27, 2019 at 01:05:08PM -0400, Sasha Levin wrote: "Some (most?) of the kernel [security] bugs that get fixed don't go through" linux-distros as well I'm not entirely happy with the wording used there, which currently is: --- Fixes for sensitive bugs, such as those that might lead to privilege escalations, may need to be coordinate ...
On Fri, Jun 28, 2019 at 02:57:43PM +0200, Solar Designer wrote: True, but we care about more than just the kernel side of things Can I suggest that we fork the discussion around security-bugsrst to LKML? I can suggest an initial patch to address your comments here but I think that this is better handled on LKML My concern with Monday is ...