CVE-2012-6544: Linux Kernel

Low severity, CVSS 1.9. EPSS: 0.4% chance of exploitation in the next 30 days.

The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that targets the (1) L2CAP or (2) HCI implementation.

Affected products

  • Linux Linux Kernel: up to and including 3.5.7; version 3.0 only; version 3.0.1 only; version 3.0.2 only; version 3.0.3 only; version 3.0.4 only; …
  • Red Hat Enterprise Linux: version 5 only; version 6.0 only

Published 2013-03-15. Last modified 2026-06-16.