-

CVE-2025-38304

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: Fix NULL pointer deference on eir_get_service_data

The len parameter is considered optional so it can be NULL so it cannot
be used for skipping to next entry of EIR_SERVICE_DATA.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 497c9d2d7d3983826bb02c10fb4a5818be6550fb
Version 8f9ae5b3ae80f168a6224529e3787f4fb27f299a
Status affected
Version < 4bf29910570666e668a60d953f8da78e95bb7fa2
Version 8f9ae5b3ae80f168a6224529e3787f4fb27f299a
Status affected
Version < 842f7c3154d5b25ca11753c02ee8cf6ee64c0142
Version 8f9ae5b3ae80f168a6224529e3787f4fb27f299a
Status affected
Version < 7d99cc0f8e6fa0f35570887899f178122a61d44e
Version 8f9ae5b3ae80f168a6224529e3787f4fb27f299a
Status affected
Version < 20a2aa01f5aeb6daad9aeaa7c33dd512c58d81eb
Version 8f9ae5b3ae80f168a6224529e3787f4fb27f299a
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.19
Status affected
Version < 5.19
Version 0
Status unaffected
Version <= 6.1.*
Version 6.1.142
Status unaffected
Version <= 6.6.*
Version 6.6.94
Status unaffected
Version <= 6.12.*
Version 6.12.34
Status unaffected
Version <= 6.15.*
Version 6.15.3
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.06
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string