CVE-2026-74531: Bluetooth: hci_conn: hold conn reference in abort_conn_sync()
Published Aug 15, 2026
·Updated
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hciconn: hold conn reference in abortconnsync()
There is theoretical UAF if the conn is freed while the hcisync task is running.
Hold refcount to avoid that.
Affected Software
1 affected component
Linux Linux kernel
Event History
Aug 15, 2026
CVE Published
via MITRE·12:27 PM
Data Sourced
via MITRE·12:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2026-74531?
CVE-2026-74531 has a risk rating of 34, indicating a moderate vulnerability.
2
How do I fix CVE-2026-74531?
To address CVE-2026-74531, update to the patched version of the Linux kernel.
3
What systems are affected by CVE-2026-74531?
CVE-2026-74531 impacts the Linux kernel and any systems utilizing Bluetooth functionalities.
4
What type of vulnerability is CVE-2026-74531?
CVE-2026-74531 is classified as a theoretical use-after-free (UAF) vulnerability in the Bluetooth stack of the Linux kernel.
5
When was CVE-2026-74531 published?
CVE-2026-74531 was published on August 15, 2026.