Re: [PATCH v3 0/3] Bluetooth: btintel: harden version TLV parsing
From: patchwork-bot+bluetooth
Date: Mon Aug 31 2026 - 15:50:16 EST
Hello:
This series was applied to bluetooth/bluetooth-next.git (master)
by Luiz Augusto von Dentz <luiz.von.dentz@xxxxxxxxx>:
On Mon, 31 Aug 2026 15:44:20 +0545 you wrote:
> Malformed Intel version TLVs can make btintel_parse_version_tlv() read
> beyond the received response. Validate the minimum value length for each
> known fixed-size TLV and bound the firmware ID conversion by the TLV's
> advertised length. Propagate parser failures to the setup path in a
> separate patch.
>
> The two bounds fixes are kept separate because they were introduced by
> different commits and apply to different stable trees. The parser error
> propagation is also separate because it changes setup behavior.
>
> [...]
Here is the summary with links:
- [v3,1/3] Bluetooth: btintel: validate version TLV value lengths
https://git.kernel.org/bluetooth/bluetooth-next/c/eb656c5bb754
- [v3,2/3] Bluetooth: btintel: bound firmware ID by TLV length
https://git.kernel.org/bluetooth/bluetooth-next/c/58c6f5ec1d22
- [v3,3/3] Bluetooth: btintel: propagate version TLV parsing errors
https://git.kernel.org/bluetooth/bluetooth-next/c/f8c8fa407aa0
You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html