๐Ÿ” CVE Alert

CVE-2026-68389

UNKNOWN 0.0

Bluetooth: hci_qca: Clear memdump state on invalid dump size

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: Clear memdump state on invalid dump size qca_controller_memdump() allocates qca->qca_memdump before processing the first dump packet. For a sequence-zero packet it then disables IBS, marks memdump collection active, and reads the advertised dump size. If the controller reports a zero dump size, the error path frees the local qca_memdump object and returns without clearing qca->qca_memdump or undoing the collection state. A later memdump work item initializes its local pointer from qca->qca_memdump and skips allocation when that pointer is non-NULL, so it can operate on freed memory. The stale collection and IBS-disabled flags can also leave waiters or later transmit handling blocked behind an aborted dump. Clear the saved pointer and memdump state before returning from the invalid-size path, matching the cleanup used when hci_devcd_init() fails. A static analysis checker reported the stale memdump state, and manual source review confirmed the invalid-size failure path.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
06d3fdfcdf5cefb06f2024b9d3dad356779399cf < 5a3945e8dea6c9a8ec9e981169ac9487e1d6ad6a 06d3fdfcdf5cefb06f2024b9d3dad356779399cf < 069258d5111eed9ac9586bee42d03d38e2975715 06d3fdfcdf5cefb06f2024b9d3dad356779399cf < cefb44c367b2b52e50f97bc8526d39df9bcf5e60 06d3fdfcdf5cefb06f2024b9d3dad356779399cf < 2363a757694752426fc47f3eadde15cf5f791fa5 06d3fdfcdf5cefb06f2024b9d3dad356779399cf < bf587a10c33e5571a299742e45bc18960b9912e7
Linux / Linux
6.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/5a3945e8dea6c9a8ec9e981169ac9487e1d6ad6a git.kernel.org: https://git.kernel.org/stable/c/069258d5111eed9ac9586bee42d03d38e2975715 git.kernel.org: https://git.kernel.org/stable/c/cefb44c367b2b52e50f97bc8526d39df9bcf5e60 git.kernel.org: https://git.kernel.org/stable/c/2363a757694752426fc47f3eadde15cf5f791fa5 git.kernel.org: https://git.kernel.org/stable/c/bf587a10c33e5571a299742e45bc18960b9912e7