Rewterz
Rewterz Threat Advisory – CVE-2022-0022 – Palo Alto Networks PAN-OS Vulnerability
March 14, 2022
Rewterz
Rewterz Threat Advisory – CVE-2022-0618 – Apple SwiftNIO HTTP/2 Vulnerability
March 14, 2022

Rewterz Threat Advisory – CVE-2022-26878 – Linux Kernel VirtIO Bluetooth driver Vulnerability

Severity

High

Analysis Summary

CVE-2022-26878

Linux Kernel is vulnerable to a denial of service, caused by a memory leak in the VirtIO Bluetooth driver in drivers/bluetooth/virtio_bt.c. By sending specially-crafted frames to the drivers interface, a remote attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2022-26878

Affected Vendors

  • Linux

Affected Products

  • Linux Kernel 5.13
  • Linux Kernel 5.14
  • Linux Kernel 5.15
  • Linux Kernel 5.16

Remediation

Upgrade to the latest version of Linux Kernel, available from the Linux Kernel GIT Repository.

Linux Kernel GIT Repository