8.8
CVE-2026-80692
- EPSS 0.22%
- Veröffentlicht 28.08.2026 06:52:55
- Zuletzt bearbeitet 29.08.2026 07:16:51
- Erkennungen
Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
881559af5f5c545f6828e7c74d79813eb886d523
Version <
9a77f296aff4b2ca5f2928ab3a3220c82d8b4074
Status
affected
Version
881559af5f5c545f6828e7c74d79813eb886d523
Version <
2f5d635ad5906b0235bc0c870e8beba3116e1e98
Status
affected
Version
d948e1ffa1d40240d5c81af6dcbcb87b39cb8d3c
Status
affected
Version
5dd0bd277a0a936708a33ecc447dce77a08cbde6
Status
affected
Version
6.6.51
Version <
6.7
Status
affected
Version
6.8.9
Version <
6.9
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.9
Status
affected
Version
0
Version <
6.9
Status
unaffected
Version <=
7.1.*
Version
7.1.8
Status
unaffected
Version <=
*
Version
7.2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.22% | 0.121 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/9a77f296aff4b2ca5f2928ab3a3220c82d8b4074
https://git.kernel.org/stable/c/2f5d635ad5906b0235bc0c870e8beba3116e1e98