๐Ÿ” CVE Alert

CVE-2026-98111

UNKNOWN 0.0

Bluetooth: btintel: validate version TLV value lengths

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: validate version TLV value lengths btintel_parse_version_tlv() verifies that a complete TLV is present in the response, but it does not ensure that the value is long enough for the specific TLV type. A short value can therefore cause an out-of-bounds read through get_unaligned_le16(), get_unaligned_le32(), or memcpy(). Reject values shorter than the minimum required by each known TLV type. Also reject responses that do not contain the Command Complete Status field.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
57375beef71af9f245e88357fa71d9600650cb7d < 83499ac3ca62e43ed40f7574b13ed398a6891511 57375beef71af9f245e88357fa71d9600650cb7d < 76948d207d0978a613ce06a05cba07284a5578a7 57375beef71af9f245e88357fa71d9600650cb7d < 5ec43df2830b73e004147303bf7914ca884d6770 57375beef71af9f245e88357fa71d9600650cb7d < a086c0892969bf8a0151b0f12bd14a68827c88b2
Linux / Linux
5.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/83499ac3ca62e43ed40f7574b13ed398a6891511 git.kernel.org: https://git.kernel.org/stable/c/76948d207d0978a613ce06a05cba07284a5578a7 git.kernel.org: https://git.kernel.org/stable/c/5ec43df2830b73e004147303bf7914ca884d6770 git.kernel.org: https://git.kernel.org/stable/c/a086c0892969bf8a0151b0f12bd14a68827c88b2