The bluetooth HCI host layer logic not clearing a global reference to a state pointer after handling connection events may allow a malicious HCI Controller to cause the use of a dangling reference in the host layer, leading to a crash (DoS) or potential RCE on the Host layer.
                
            Metrics
Affected Vendors & Products
Advisories
    | Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2023-24091 | The bluetooth HCI host layer logic not clearing a global reference to a state pointer after handling connection events may allow a malicious HCI Controller to cause the use of a dangling reference in the host layer, leading to a crash (DoS) or potential RCE on the Host layer. | 
Fixes
    Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
        History
                    Thu, 07 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-672 | |
| Metrics | 
        
        ssvc
         
  | 
Status: PUBLISHED
Assigner: zephyr
Published:
Updated: 2024-11-07T15:21:40.963Z
Reserved: 2023-04-05T22:24:28.688Z
Link: CVE-2023-1902
Updated: 2024-08-02T06:05:26.909Z
Status : Modified
Published: 2023-07-10T16:15:49.053
Modified: 2024-11-21T07:40:06.773
Link: CVE-2023-1902
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD