CVE-2024-26886

Bluetooth: af_bluetooth: Fix deadlock

References

Notes

 carnil> Introduced in 2e07e8348ea4 ("Bluetooth: af_bluetooth: Fix Use-After-Free in
 carnil> bt_sock_recvmsg"). Vulnerable versions: 5.10.206 5.15.146 6.1.70 6.6.9 6.7-rc7.

Bugs

Status

Branch Status
upstream released (6.9-rc1) [f7b94bdc1ec107c92262716b073b3e816d4784fb]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.8-upstream-stable released (6.8.2) [2c9e2df022ef8b9d7fac58a04a2ef4ed25288955]
6.7-upstream-stable released (6.7.11) [817e8138ce86001b2fa5c63d6ede756e205a01f7]
6.6-upstream-stable released (6.6.23) [64be3c6154886200708da0dfe259705fb992416c]
6.1-upstream-stable needed
5.10-upstream-stable needed
4.19-upstream-stable N/A "Vulnerable code not present"
sid released (6.7.12-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed