-

CVE-2026-43069

Bluetooth: hci_ll: Fix firmware leak on error path

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: hci_ll: Fix firmware leak on error path

Smatch reports:

drivers/bluetooth/hci_ll.c:587 download_firmware() warn:
'fw' from request_firmware() not released on lines: 544.

In download_firmware(), if request_firmware() succeeds but the returned
firmware content is invalid (no data or zero size), the function returns
without releasing the firmware, resulting in a resource leak.

Fix this by calling release_firmware() before returning when
request_firmware() succeeded but the firmware content is invalid.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 371805522f870986144fcd88727a47858e364a2c
Version < 95e8601af227b2b4390eecf8db6abdb9f6a91f17
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < e6d95488c8c964d1df0d3e1db44c958706311e86
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < b2dfbf1b5ff192cefd49574b951a4af9ddd32213
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < 28904375d54b436a757641fb0331537778c0de5a
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < 5213ef54528dd1ac79b846e30d8f72ce092794aa
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < 9ecbfd93cd6de6c78cb7fd51fe079e36c7ff074b
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < a7803df606a7d22e896b030f619e1d9d20ae0c6b
Status affected
Version 371805522f870986144fcd88727a47858e364a2c
Version < 31148a7be723aa9f2e8fbd62424825ab8d577973
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.12
Status affected
Version 0
Version < 4.12
Status unaffected
Version <= 5.10.*
Version 5.10.253
Status unaffected
Version <= 5.15.*
Version 5.15.203
Status unaffected
Version <= 6.1.*
Version 6.1.168
Status unaffected
Version <= 6.6.*
Version 6.6.131
Status unaffected
Version <= 6.12.*
Version 6.12.80
Status unaffected
Version <= 6.18.*
Version 6.18.21
Status unaffected
Version <= 6.19.*
Version 6.19.11
Status unaffected
Version <= *
Version 7.0
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.093
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.