← Voltar à pesquisa de CVEs

CVE-2026-68392

Descrição

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync Dereferencing RCU-protected pointers outside critical sections is invalid and may lead to UAF. Take hdev->lock for hci_conn lookup and hci_abort_conn(). Don-t use RCU to ensure the conn is fully initialized at this point.

EPSS 0.168%Risco 0
Ver fonte
Publicação
2026-08-10 13:20:32
Última alteração
2026-08-10 13:20:32
Vetor
Pending