CVE-2024-43884: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Add error handling to pair_device() hci_conn_params_add() never checks for a NULL value and could lead to a NULL pointer dereference causing a crash. Fixed by adding error handling in the function.

Affected products

  • Linux Linux Kernel: from 4.3, up to and including 6.10.6; version 6.11 only

Published 2024-08-26. Last modified 2026-06-17.