CVE-2024-35966 | Linux Kernel up to 6.8.6 Bluetooth include/linux/sockptr.h rfcomm_sock_setsockopt_old out-of-bounds (c3f787a3eafe/a97de7bff13b / Nessus ID 208099)
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.8.6. This issue affects the function rfcomm_sock_setsockopt_old in the library include/linux/sockptr.h of the component Bluetooth. Performing manipulation results in out-of-bounds read.
This vulnerability is cataloged as CVE-2024-35966. The attack must originate from the local network. There is no exploit available.
It is suggested to upgrade the affected component.