Re: [PATCH v3 0/3] Bluetooth: btintel: harden version TLV parsing

From: patchwork-bot+bluetooth

Date: Mon Aug 31 2026 - 15:50:16 EST


Hello:

This series was applied to bluetooth/bluetooth-next.git (master)
by Luiz Augusto von Dentz <luiz.von.dentz@xxxxxxxxx>:

On Mon, 31 Aug 2026 15:44:20 +0545 you wrote:
> Malformed Intel version TLVs can make btintel_parse_version_tlv() read
> beyond the received response. Validate the minimum value length for each
> known fixed-size TLV and bound the firmware ID conversion by the TLV's
> advertised length. Propagate parser failures to the setup path in a
> separate patch.
>
> The two bounds fixes are kept separate because they were introduced by
> different commits and apply to different stable trees. The parser error
> propagation is also separate because it changes setup behavior.
>
> [...]

Here is the summary with links:
- [v3,1/3] Bluetooth: btintel: validate version TLV value lengths
https://git.kernel.org/bluetooth/bluetooth-next/c/eb656c5bb754
- [v3,2/3] Bluetooth: btintel: bound firmware ID by TLV length
https://git.kernel.org/bluetooth/bluetooth-next/c/58c6f5ec1d22
- [v3,3/3] Bluetooth: btintel: propagate version TLV parsing errors
https://git.kernel.org/bluetooth/bluetooth-next/c/f8c8fa407aa0

You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html