CVE-2024-35967 | Linux Kernel up to 5.10.215/6.1.86/6.6.27/6.8.6 Bluetooth include/linux/sockptr.h sco_sock_setsockopt out-of-bounds (Nessus ID 213100)
A vulnerability was found in Linux Kernel up to 5.10.215/6.1.86/6.6.27/6.8.6 and classified as problematic. This issue affects the function sco_sock_setsockopt in the library include/linux/sockptr.h of the component Bluetooth. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-35967. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.