Bluetooth Vulnerability in Linux Kernel Affects Central Connection Stability
CVE-2026-68394
What is CVE-2026-68394?
A vulnerability exists in the Linux kernel's Bluetooth module, specifically within the management operations for loading connection parameters. The flaw arises when a single parameter update queues a function call that can interact unfavorably with previously stored connection data. This oversight can result in a use-after-free condition, potentially leading to unexpected behavior or system crashes. To mitigate the issue, developers need to ensure that references to connection parameters are correctly maintained and validated to prevent any interaction with freed memory, reinforcing the stability and reliability of Bluetooth connections within the Linux kernel.
Affected Version(s)
Linux 0ece498c27d8cd2fdad6f49a6abc34b8badd8fbc < 65ce6fe1b92112ba9064ded932c03180da3dd230
Linux 0ece498c27d8cd2fdad6f49a6abc34b8badd8fbc < 57059ff14d81df4a970b2ea8d8f54431bb91a025
Linux 0ece498c27d8cd2fdad6f49a6abc34b8badd8fbc