Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-45834

Опубликовано: 26 мая 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().

A flaw was found in the Linux kernel's Bluetooth L2CAP (Logical Link Control and Adaptation Protocol) implementation. A missing null pointer guard in the l2cap_sock_state_change_cb() function can lead to a null pointer dereference. This vulnerability could allow an attacker to cause a system crash, resulting in a Denial of Service (DoS).

Отчет

This Moderate impact flaw in the Linux kernel's Bluetooth L2CAP implementation can lead to a system crash due to a null pointer dereference. Exploitation requires local access or close proximity to a system with an active Bluetooth adapter, limiting the attack surface. Red Hat Enterprise Linux systems with Bluetooth enabled are affected.

Меры по смягчению последствий

To mitigate this issue, disable the Bluetooth functionality if it is not required. This can be achieved by blacklisting the bluetooth kernel module.

  1. Create a new file /etc/modprobe.d/disable-bluetooth.conf with the following content: blacklist bluetooth
  2. Regenerate the initramfs: sudo dracut -f -v
  3. Reboot the system for the changes to take effect: sudo reboot Warning: Disabling the Bluetooth module will prevent all Bluetooth-related functionality on the system and requires a system reboot to take full effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10kernelFix deferred
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelFix deferred
Red Hat Enterprise Linux 7kernel-rtFix deferred
Red Hat Enterprise Linux 8kernelFix deferred
Red Hat Enterprise Linux 8kernel-rtFix deferred
Red Hat Enterprise Linux 9kernelFix deferred
Red Hat Enterprise Linux 9kernel-rtFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2481554kernel: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb()

EPSS

Процентиль: 2%
0.00123
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().

CVSS3: 5.5
nvd
2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().

CVSS3: 5.5
msrc
2 месяца назад

Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb()

CVSS3: 5.5
debian
2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: B ...

CVSS3: 5.5
github
2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().

EPSS

Процентиль: 2%
0.00123
Низкий

5.5 Medium

CVSS3