CVE-2026-74529: Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback
Published Aug 15, 2026
·Updated
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hcisync: hold conn in hciconnectpasync() callback
There is theoretical UAF if the conn is freed while the hcisync task is running.
Hold refcount to avoid that.
Event History
Aug 15, 2026
CVE Published
via MITRE·12:27 PM
Data Sourced
via MITRE·12:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2026-74529?
CVE-2026-74529 has a risk rating of 30, indicating a significant vulnerability.
2
How do I fix CVE-2026-74529?
To fix CVE-2026-74529, ensure you upgrade to a patched version of the Linux kernel that addresses this vulnerability.
3
What systems are affected by CVE-2026-74529?
CVE-2026-74529 affects systems using the Linux kernel with Bluetooth functionalities.
4
What are the potential impacts of CVE-2026-74529?
The potential impact of CVE-2026-74529 includes a theoretical use-after-free vulnerability, which could lead to system instability or remote code execution.
5
When was CVE-2026-74529 published?
CVE-2026-74529 was published on August 15, 2026.