Bluetooth: qca: fix info leak when fetching fw build id
Add the missing sanity checks and move the 255-byte build-id buffer off
the stack to avoid leaking stack data through debugfs in case the
build-info reply is malformed.
Metrics
Affected Vendors & Products
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 07 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
ssvc
|

Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2025-05-04T09:10:57.176Z
Reserved: 2024-05-17T13:50:33.160Z
Link: CVE-2024-36032

Updated: 2024-08-02T03:30:12.639Z

Status : Awaiting Analysis
Published: 2024-05-30T16:15:11.490
Modified: 2024-11-21T09:21:28.780
Link: CVE-2024-36032


Updated: 2025-07-12T22:23:18Z