CVE-2026-53209: Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend
Published Jun 25, 2026
·Updated
Bluetooth: hcisync: reject oversized Broadcast Announcement prepend
Affected Software
21 affected componentsFixes available
Linux Linux kernel
Microsoft azl3 kernel 6.6.141.1-1<6.6.143.1-1
6.6.143.1-1
Linux Linux kernel>=6.1.142<6.1.176
Linux Linux kernel>=6.6.94<6.6.143
Linux Linux kernel>=6.12.34<6.12.94
Linux Linux kernel>=6.15.3<6.16
Linux Linux kernel>=6.16.1<6.18.36
Linux Linux kernel>=6.19<7.0.13
Linux Linux kernel=6.16
Linux Linux kernel=6.16-rc2
Linux Linux kernel=6.16-rc3
Linux Linux kernel=6.16-rc4
Linux Linux kernel=6.16-rc5
Linux Linux kernel=6.16-rc6
Linux Linux kernel=6.16-rc7
Linux Linux kernel=7.1-rc1
Linux Linux kernel=7.1-rc2
Linux Linux kernel=7.1-rc3
Linux Linux kernel=7.1-rc4
Linux Linux kernel=7.1-rc5
Linux Linux kernel=7.1-rc6
Remediation
Event History
Jun 25, 2026
CVE Published
via MITRE·08:39 AM
Data Sourced
via MITRE·08:39 AM
DescriptionSeverity
Data Sourced
via NVD·09:16 AM
RemedyDescriptionSeverityWeaknessAffected Software
Jun 27, 2026
Data Sourced
via Microsoft·08:11 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:11 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-53209?
The severity of CVE-2026-53209 is classified as high with a score of 7.8.
2
What does CVE-2026-53209 affect?
CVE-2026-53209 affects the Bluetooth functionality in the Linux kernel.
3
How do I fix CVE-2026-53209?
You can fix CVE-2026-53209 by applying the available patch provided for the Linux kernel.
4
What are the potential impacts of CVE-2026-53209?
The impacts of CVE-2026-53209 include potential unauthorized access and data exposure via Bluetooth.
5
Is there a workaround for CVE-2026-53209?
There are no known workarounds for CVE-2026-53209; patching is the recommended approach.