PT-2024-1479 · Linux+5 · Linux Kernel+5

·

CVE-2024-22099

·

Published

2024-01-24

·

Updated

2026-05-12

CVSS v3.1

6.3

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel version v2.6.12-rc2
Description The issue is related to a NULL Pointer Dereference vulnerability in the Linux kernel, specifically in the net and bluetooth modules. This vulnerability is associated with program files /net/bluetooth/rfcomm/core.C and allows for Overflow Buffers. The rfcomm check security() function is mentioned as being related to the vulnerability, which is associated with a null pointer dereference. This could potentially allow an attacker to cause a denial of service.
Recommendations To resolve the issue for Linux kernel version v2.6.12-rc2, update to a version newer than v2.6.12-rc2, as upstream kernel version 6.6.28 is mentioned to fix bugs and vulnerabilities. As a temporary workaround, consider disabling the rfcomm check security() function until a patch is available. Restrict access to the vulnerable module net/bluetooth/rfcomm/core.C to minimize the risk of exploitation.

Exploit

Fix

DoS

NULL Pointer Dereference

Out of bounds Read

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-00986
CVE-2024-22099
DLA-3840-1
DLA-3842-1
DSA-5658-1
DSA-5681-1
INFSA-2024_9315
MGASA-2024-0141
MGASA-2024-0142
OESA-2024-1281
OESA-2024-1282
OESA-2024-1283
OESA-2024-1284
OESA-2024-1285
OESA-2024-1286
OPENSUSE-SU-2024_1322-1
OPENSUSE-SU-2024_1322-2
OPENSUSE-SU-2024_1332-1
OPENSUSE-SU-2024_1332-2
OPENSUSE-SU-2024_1466-1
OPENSUSE-SU-2024_1480-1
OPENSUSE-SU-2024_1489-1
OPENSUSE-SU-2024_1490-1
OPENSUSE-SU-2024_1641-1
OPENSUSE-SU-2024_1642-1
OPENSUSE-SU-2024_1644-1
OPENSUSE-SU-2024_1659-1
OPENSUSE-SU-2024_1663-1
RHSA-2024:9315
RHSA-2024_9315
SUSE-SU-2024:1454-1
SUSE-SU-2024:1465-1
SUSE-SU-2024:1466-1
SUSE-SU-2024:1480-1
SUSE-SU-2024:1489-1
SUSE-SU-2024:1490-1
SUSE-SU-2024:1641-1
SUSE-SU-2024:1642-1
SUSE-SU-2024:1643-1
SUSE-SU-2024:1644-1
SUSE-SU-2024:1646-1
SUSE-SU-2024:1647-1
SUSE-SU-2024:1650-1
SUSE-SU-2024:1659-1
SUSE-SU-2024:1663-1
SUSE-SU-2024:1870-1
SUSE-SU-2024:2135-1
SUSE-SU-2024:2203-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20249-1
USN-6820-1
USN-6820-2
USN-6821-1
USN-6821-2
USN-6821-3
USN-6821-4
USN-6828-1
USN-6871-1
USN-6892-1
USN-6896-1
USN-6896-2
USN-6896-3
USN-6896-4
USN-6896-5
USN-6919-1
USN-6972-1
USN-6972-2
USN-6972-3
USN-6972-4
USN-6976-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu