๐Ÿ” CVE Alert

CVE-2026-74304

UNKNOWN 0.0

Bluetooth: hci_qca: fix NULL pointer dereference in qca_setup() for non-serdev device

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: fix NULL pointer dereference in qca_setup() for non-serdev device hu->serdev is NULL for hci_uart attached via non-serdev paths, but qca_setup() unconditionally calls serdev_device_get_drvdata(hu->serdev) and dereferences the result, causing a NULL pointer dereference. Fix by guarding the dereference with a NULL check, consistent with the rest of qca_setup().

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
22d893eec0d52fa97d25d3de248285648f26ef68 < 0704c04769ccc1a0939682db35d816dfa5fe75dc 22d893eec0d52fa97d25d3de248285648f26ef68 < 3ec629fee178d429f01ae843e4ea888de93012bf
Linux / Linux
7.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/0704c04769ccc1a0939682db35d816dfa5fe75dc git.kernel.org: https://git.kernel.org/stable/c/3ec629fee178d429f01ae843e4ea888de93012bf