CVE-2024-7138

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 19, 2024
CWE ID 617

Summary

CVE-2024-7138 is a vulnerability affecting L2CAP (Logical Link Control and Adaptation Protocol) that can lead to a temporary denial of service. A malformed L2CAP packet sent by a peer device can trigger an assertion, causing the issue. If a watchdog timer is not enabled on the affected device, a hard reset is necessary to recover from the vulnerability. This issue may impact the availability of devices that use L2CAP for communication.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share