CVE-2026-74531: Linux
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.
Affected products
- Linux Linux: from 6.6.51, before 6.6.151 (fixed in 6.6.151); from 6.1.184, before 6.2 (fixed in 6.2); from 6.10.10, before 6.11 (fixed in 6.11); from 6.11, before 6.12.103 (fixed in 6.12.103); from 6.13, before 6.18.44 (fixed in 6.18.44); from 6.19, before 7.1.8 (fixed in 7.1.8)
Published 2026-08-15. Last modified 2026-08-23.