Ilia Gavrilov
5f7350ff2b
Bluetooth: MGMT: Fix OOB access in parse_adv_monitor_pattern()
...
commit 8d59fba49362c65332395789fd82771f1028d87e upstream.
In the parse_adv_monitor_pattern() function, the value of
the 'length' variable is currently limited to HCI_MAX_EXT_AD_LENGTH(251).
The size of the 'value' array in the mgmt_adv_pattern structure is 31.
If the value of 'pattern[i].length' is set in the user space
and exceeds 31, the 'patterns[i].value' array can be accessed
out of bound when copied.
Increasing the size of the 'value' array in
the 'mgmt_adv_pattern' structure will break the userspace.
Considering this, and to avoid OOB access revert the limits for 'offset'
and 'length' back to the value of HCI_MAX_AD_LENGTH.
Found by InfoTeCS on behalf of Linux Verification Center
(linuxtesting.org) with SVACE.
Fixes: db08722fc7 ("Bluetooth: hci_core: Fix missing instances using HCI_MAX_AD_LENGTH")
Cc: stable@vger.kernel.org
Signed-off-by: Ilia Gavrilov <Ilia.Gavrilov@infotecs.ru >
Signed-off-by: Luiz Augusto von Dentz <luiz.von.dentz@intel.com >
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org >
2025-11-24 10:29:54 +01:00
..
2023-03-27 02:33:48 +00:00
2025-11-24 10:29:54 +01:00
2023-08-10 18:24:48 -07:00
2021-11-19 11:52:25 +00:00
2024-10-10 11:58:03 +02:00
2025-10-19 16:30:44 +02:00
2024-06-27 13:49:08 +02:00
2025-11-24 10:29:33 +01:00
2023-10-04 14:22:27 -07:00
2023-06-15 22:33:26 -07:00
2025-04-25 10:45:32 +02:00
2025-08-15 12:08:47 +02:00
2020-02-28 14:51:30 +01:00
2023-02-20 16:46:10 -08:00
2024-04-17 11:19:29 +02:00
2019-05-30 11:26:41 -07:00
2023-05-01 07:43:19 +01:00
2025-06-04 14:42:23 +02:00
2025-07-17 18:35:09 +02:00
2017-11-02 11:10:55 +01:00
2022-07-22 12:53:22 +01:00
2023-03-21 21:32:18 -07:00
2017-11-02 11:10:55 +01:00
2025-02-08 09:51:55 +01:00
2022-08-09 22:14:02 -07:00
2021-12-13 12:34:09 +00:00
2025-08-28 16:28:49 +02:00
2022-11-02 20:38:13 -07:00
2025-08-28 16:28:49 +02:00
2025-08-28 16:28:49 +02:00
2021-03-26 17:43:55 +01:00
2024-09-04 13:28:28 +02:00
2019-05-21 11:28:45 +02:00
2022-11-16 11:31:47 +02:00
2025-08-28 16:28:20 +02:00
2024-04-03 15:28:27 +02:00
2025-06-27 11:09:00 +01:00
2020-07-15 07:45:24 -07:00
2025-11-24 10:29:38 +01:00
2021-12-22 15:03:47 -08:00
2022-07-22 12:53:22 +01:00
2023-07-14 20:39:29 -07:00
2022-07-24 18:39:17 -06:00
2023-07-27 17:17:32 -07:00
2022-07-22 12:53:22 +01:00
2023-01-20 09:33:22 +00:00
2023-08-27 17:08:45 -07:00
2023-08-19 15:30:15 +01:00
2023-08-14 08:01:06 +01:00
2023-04-09 15:35:49 +01:00
2023-07-18 09:47:08 +02:00
2019-12-16 16:09:44 -08:00
2021-11-29 19:50:45 -08:00
2022-12-05 21:58:27 -08:00
2024-06-16 13:47:44 +02:00
2025-08-15 12:08:46 +02:00
2022-07-22 12:53:22 +01:00
2022-07-22 12:53:22 +01:00
2020-04-20 07:34:16 +02:00
2022-07-22 12:53:22 +01:00
2021-12-06 16:06:02 -08:00
2019-12-24 22:37:30 -08:00
2021-12-16 07:18:35 -08:00
2022-07-28 22:21:54 -07:00
2023-08-02 10:09:31 +01:00
2023-08-02 10:09:32 +01:00
2023-11-20 11:59:34 +01:00
2023-04-12 16:40:39 -07:00
2022-12-01 15:09:10 +01:00
2023-08-08 15:58:23 -07:00
2022-07-22 12:53:22 +01:00
2021-10-18 12:54:41 +01:00
2024-11-01 01:58:23 +01:00
2022-10-31 10:43:04 +00:00
2021-01-29 20:39:14 -08:00
2017-11-02 11:10:55 +01:00
2024-05-17 12:02:07 +02:00
2023-06-10 00:11:41 -07:00
2022-07-22 12:53:22 +01:00
2022-07-22 12:53:22 +01:00
2023-07-28 14:07:59 -07:00
2022-07-22 12:53:22 +01:00
2021-06-28 14:29:45 -07:00
2024-12-09 10:31:35 +01:00
2023-03-23 21:51:30 +01:00
2023-12-20 17:01:45 +01:00
2019-04-22 21:50:53 -07:00
2022-07-22 12:53:22 +01:00
2023-08-15 13:57:51 -07:00
2023-08-14 07:06:13 +01:00
2025-01-17 13:36:12 +01:00
2022-02-07 20:12:45 -08:00
2021-10-15 11:33:08 +01:00
2025-05-09 09:43:57 +02:00
2023-08-15 13:57:51 -07:00
2024-01-31 16:19:01 -08:00
2024-08-29 17:33:46 +02:00
2025-02-08 09:51:53 +01:00
2022-02-17 07:00:39 -06:00
2021-11-16 13:16:54 +00:00
2024-12-14 19:59:35 +01:00
2024-12-14 19:59:35 +01:00
2022-04-25 11:40:45 +01:00
2024-08-03 08:54:05 +02:00
2025-10-23 16:16:31 +02:00
2023-04-22 01:39:41 +02:00
2025-03-07 16:45:39 +01:00
2022-09-29 07:18:00 +02:00
2022-07-22 12:53:22 +01:00
2022-10-31 20:14:27 -07:00
2024-03-01 13:35:04 +01:00
2023-09-13 07:18:04 +01:00
2023-08-22 21:40:40 +02:00
2024-08-29 17:33:46 +02:00
2025-02-21 13:57:07 +01:00
2018-07-11 23:10:19 -07:00
2024-12-19 18:11:28 +01:00
2017-11-02 11:10:55 +01:00
2023-08-04 15:33:17 -07:00
2023-08-04 15:33:17 -07:00
2022-07-22 12:53:22 +01:00
2023-07-20 10:46:28 +02:00
2021-10-13 09:40:46 -07:00
2024-01-31 16:19:01 -08:00
2022-07-22 12:53:22 +01:00
2022-07-22 12:53:22 +01:00
2022-07-28 11:29:36 +02:00
2021-11-07 19:25:29 +00:00
2025-08-15 12:08:46 +02:00
2025-08-28 16:28:21 +02:00
2022-10-12 12:57:19 +02:00
2024-05-02 16:32:50 +02:00
2024-10-17 15:24:29 +02:00
2021-10-29 13:23:51 +01:00
2020-03-02 11:16:27 -08:00
2021-03-26 15:14:56 -07:00
2022-07-22 12:53:22 +01:00
2020-05-29 21:20:20 -07:00
2023-08-22 17:31:18 -07:00
2022-11-18 12:14:55 +00:00
2022-07-22 12:53:22 +01:00
2023-08-07 08:53:55 +01:00
2025-08-28 16:28:23 +02:00
2024-12-09 10:32:59 +01:00
2018-05-28 22:59:54 -04:00
2025-08-28 16:28:39 +02:00
2017-11-02 11:10:55 +01:00
2021-12-10 06:38:26 -08:00
2024-01-25 15:35:57 -08:00
2023-08-03 08:38:07 -07:00
2022-07-22 12:53:22 +01:00
2019-05-21 11:28:45 +02:00
2025-09-09 18:56:22 +02:00
2019-11-12 08:18:03 -08:00
2022-07-22 12:53:22 +01:00
2023-05-11 18:07:05 -07:00
2023-01-28 13:51:22 +01:00
2023-07-14 20:39:29 -07:00
2023-08-04 15:33:50 -07:00
2023-07-14 20:39:30 -07:00
2023-06-02 09:55:22 +01:00
2023-08-07 08:53:54 +01:00
2025-11-02 22:14:40 +09:00
2022-07-22 12:53:22 +01:00
2022-07-15 18:50:35 -07:00
2021-08-09 15:34:21 -07:00
2022-07-22 12:53:22 +01:00
2023-04-06 12:01:20 -07:00
2023-03-17 08:56:37 +00:00
2022-10-11 17:42:58 -06:00
2023-06-19 12:05:29 +02:00
2022-02-02 14:45:18 +00:00
2025-09-04 15:30:25 +02:00
2025-03-07 16:45:39 +01:00
2023-06-19 11:32:58 -07:00
2023-07-14 20:39:30 -07:00
2024-10-17 15:24:29 +02:00
2019-04-22 21:47:25 -07:00
2025-05-22 14:12:15 +02:00
2025-06-04 14:42:24 +02:00
2022-07-22 12:53:22 +01:00
2019-05-30 11:26:32 -07:00
2019-05-30 11:26:32 -07:00
2022-01-04 12:17:35 +00:00
2021-04-28 14:06:45 -07:00
2018-04-11 10:33:46 -04:00
2024-12-14 19:59:37 +01:00
2019-10-05 16:29:00 -07:00
2022-10-25 11:35:16 +02:00
2025-09-19 16:32:01 +02:00
2023-08-03 18:10:10 -07:00
2022-07-22 12:53:22 +01:00
2025-02-27 04:10:50 -08:00
2024-03-01 13:35:06 +01:00
2023-02-16 09:27:07 +01:00
2019-05-30 11:26:32 -07:00
2025-02-27 04:10:50 -08:00
2024-07-18 13:21:12 +02:00
2019-05-30 11:26:32 -07:00
2018-05-08 00:02:41 -04:00
2023-07-28 14:07:59 -07:00
2019-10-04 14:07:07 -07:00
2024-11-17 15:08:57 +01:00
2023-08-01 15:06:27 -07:00
2022-12-12 15:04:39 -08:00
2022-07-22 12:53:22 +01:00
2023-11-20 11:58:56 +01:00
2025-08-15 12:09:02 +02:00
2023-11-20 11:58:56 +01:00
2019-11-14 18:12:17 -08:00
2023-08-02 10:58:26 +01:00
2018-01-24 19:13:45 -05:00
2023-03-18 12:23:34 +00:00
2017-11-02 11:10:55 +01:00
2022-07-22 12:53:22 +01:00
2024-01-31 16:19:04 -08:00
2024-01-10 17:16:54 +01:00
2025-11-24 10:29:22 +01:00
2025-06-04 14:42:17 +02:00
2023-07-19 09:56:49 -07:00