CVE-2024-35966 | Linux Kernel up to 6.8.6 Bluetooth include/linux/sockptr.h rfcomm_sock_setsockopt_old out-of-bounds (c3f787a3eafe/a97de7bff13b / Nessus ID 208099)
A vulnerability has been found in Linux Kernel up to 6.8.6 and classified as problematic. This vulnerability affects the function rfcomm_sock_setsockopt_old in the library include/linux/sockptr.h of the component Bluetooth. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2024-35966. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.