Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix potential user-after-free This fixes all instances of which requires to allocate a buffer calling alloc_skb which may release the chan lock and reacquire later which makes it possible that the chan is disconnected in the meantime.
References (8)
Core 8
Core References
Scores
EPSS
0.0018
EPSS Percentile
8.2%
Details
Status
published
Products (25)
linux/Kernel
3.5.0 - 4.14.308linux
linux/Kernel
4.15.0 - 4.19.276linux
linux/Kernel
4.20.0 - 5.4.235linux
linux/Kernel
5.11.0 - 5.15.99linux
linux/Kernel
5.16.0 - 6.1.16linux
linux/Kernel
5.5.0 - 5.10.173linux
linux/Kernel
6.2.0 - 6.2.3linux
Linux/Linux
< 3.5
Linux/Linux
3.5
Linux/Linux
4.14.308 - 4.14.*
... and 15 more
Published
Dec 30, 2025
Tracked Since
Feb 18, 2026