← Retour à la recherche de CVE

CVE-2026-68392

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync Dereferencing RCU-protected pointers outside critical sections is invalid and may lead to UAF. Take hdev->lock for hci_conn lookup and hci_abort_conn(). Don-t use RCU to ensure the conn is fully initialized at this point.

EPSS 0.168%Risque 0
Voir la source
Publication
2026-08-10 13:20:32
Dernière modification
2026-08-10 13:20:32
Vecteur
Pending