CVE-2026-98293: Bluetooth: ISO: Fix parent socket leak in iso_conn_ready()
Published Oct 6, 2026
·Updated
Bluetooth: ISO: Fix parent socket leak in isoconnready()
Affected Software
1 affected component
Linux Linux kernel
Event History
Oct 6, 2026
CVE Published
via MITRE·08:45 AM
Data Sourced
via MITRE·08:45 AM
Description
Data Sourced
via NVD·09:18 AM
Description
Oct 7, 2026
Data Sourced
via Microsoft·08:19 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What condition is required for the leak to occur?
The leak occurs when iso_conn_ready() obtains a referenced parent socket through iso_get_sock(), then iso_sock_alloc() fails while setting up the child socket. On that error path, the parent socket reference was not dropped.
2
What is the impact of the vulnerable error path?
The parent socket remains referenced and is leaked. The provided information identifies a resource leak; it does not describe code execution, privilege escalation, or data exposure.
3
How is the issue fixed?
The fix drops the parent socket reference on the iso_sock_alloc() failure path, in addition to releasing the socket lock. This prevents the parent socket from being retained after child-socket allocation fails.