๐Ÿ” CVE Alert

CVE-2026-68393

UNKNOWN 0.0

Bluetooth: hci_sync: extend conn_hash lookup critical sections

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: extend conn_hash lookup critical sections Using RCU-protected pointers outside the critical sections without refcount is incorrect and may result to UAF. Extend critical section to cover both hci_conn_hash lookup and use of the returned conn. Add surrounding rcu_read_lock() also when return value is not used, in preparation for RCU lockdep requirement to hci_lookup_le_connect(). This avoids concurrent deletion of the conn before we are done dereferencing it. Also, make sure to hold hdev->lock when accessing hdev->accept_list.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
6d0417e4e1cf66fd917f06f0454958362714ef7d < 83b7e67698d0b93f685875ce82c8d335436834f7 6d0417e4e1cf66fd917f06f0454958362714ef7d < 38326774df6198df0cc2744cc73bf77cb741c538 6d0417e4e1cf66fd917f06f0454958362714ef7d < d5efd6e4b8b0634af6843178fe1a7dd2b2178a3d eb8b860e87b296bd1874c79a668081efd00f9754 94bf6380e936339a700c0b3171a49baf512aa70b 6.12.28 < 6.13 6.14.6 < 6.15
Linux / Linux
6.15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/83b7e67698d0b93f685875ce82c8d335436834f7 git.kernel.org: https://git.kernel.org/stable/c/38326774df6198df0cc2744cc73bf77cb741c538 git.kernel.org: https://git.kernel.org/stable/c/d5efd6e4b8b0634af6843178fe1a7dd2b2178a3d