CVE-2025-38099

MEDIUM

Linux Kernel < 6.12.31, 6.12.24-6.12.31, 6.14.2-6.14.9 - Denial of Service via Bluetooth SCO Connection

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Disable SCO support if READ_VOICE_SETTING is unsupported/broken A SCO connection without the proper voice_setting can cause the controller to lock up.

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 5.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (10)
linux/Kernel 6.12.24 - 6.12.31linux
linux/Kernel 6.14.2 - 6.14.9linux
Linux/Linux 035e1bffc063399ad1e193f6e4d8f70bb2f6301f - f48ee562c095e552a30b8d9cc0566a267b410f8a
Linux/Linux 6.12.24 - 6.12.31
Linux/Linux 6.13.12 - 6.14
Linux/Linux 6.14.2 - 6.14.9
Linux/Linux a256de0d34e5937da8e9e0b23a8fa17ec32afa7d - ec1f015ec0c6fd250a6564e8452f7bb3160b9cb1
Linux/Linux ddb89022bb79e04ee47d830788cc1d20751520d0
Linux/Linux ff26b2dd6568392f60fa67a4e58279938025c3af - 14d17c78a4b1660c443bae9d38c814edea506f62
linux/linux_kernel < 6.12.31
Published Jul 03, 2025
Tracked Since Feb 18, 2026