In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback
There is theoretical UAF if the conn is freed while the hci_sync task is
running.
Hold refcount to avoid that.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-15 13:17
Updated : 2026-08-17 06:19
NVD link : CVE-2026-74529
Mitre link : CVE-2026-74529
CVE.ORG link : CVE-2026-74529
JSON object : View
Products Affected
No product.
CWE
No CWE.
