CVE-2026-64409: Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work()
Bluetooth: btmtksdio: fix infinite loop in btmtksdiotxrxwork()
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.145.2-1 - Compensating control
Fix the btmtksdio_txrx_work() loop termination condition so it enforces a 5*HZ timeout; correct the time_is_before_jiffies(old_jiffies + 5*HZ) logic that causes the loop to remain active while there are pending interrupts.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-64409?
The severity of CVE-2026-64409 is rated as medium with a score of 5.5.
How does CVE-2026-64409 affect system performance?
CVE-2026-64409 can lead to an infinite loop in the btmtksdio_txrx_work() function, potentially causing system tasks to hang.
How do I fix CVE-2026-64409?
To fix CVE-2026-64409, ensure you update to a patched version of the Linux kernel that addresses this vulnerability.
What is the impact of not addressing CVE-2026-64409?
Not addressing CVE-2026-64409 may result in continuous task blocking and decreased system responsiveness.
Is CVE-2026-64409 specific to any operating system?
CVE-2026-64409 specifically affects the Linux kernel and relevant implementations such as the Microsoft azl3 kernel.