PT-2026-30155 · Linux+2 · Linux Kernel+2

·

CVE-2026-23461

·

Publicado

2025-11-06

·

Atualizado

2026-08-30

CVSS v3.1

8.8

Alta

VetorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Kernel Linux (versões afetadas não especificadas)
Description Uma falha existe na implementação Bluetooth L2CAP do kernel Linux, especificamente dentro da função l2cap unregister user. Uma condição de corrida ocorre porque l2cap register user e l2cap unregister user não usam o mecanismo conn->lock, permitindo acesso concorrente a conn->users e conn->hchan juntamente com l2cap conn del. Isso pode resultar em uma condição de uso após liberação e corrupção de lista.
Recommendations No momento, não há informações sobre uma versão mais recente que contenha uma correção para esta vulnerabilidade.

Exploit

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-10727
CVE-2026-23461
OESA-2026-1946
OESA-2026-1947
OESA-2026-1948
OESA-2026-2582
OPENSUSE-SU-2026:20826-1
SUSE-SU-2026:2068-1
SUSE-SU-2026:21834-1
SUSE-SU-2026:21841-1
SUSE-SU-2026:21845-1
SUSE-SU-2026:21860-1
SUSE-SU-2026:21876-1
SUSE-SU-2026:21877-1
SUSE-SU-2026:21916-1
SUSE-SU-2026:21919-1
SUSE-SU-2026:2195-1
SUSE-SU-2026:2217-1
SUSE-SU-2026:2238-1
USN-8567-1
USN-8574-1
USN-8574-2
USN-8574-3
USN-8595-1
USN-8595-2
USN-8595-3
USN-8596-1
USN-8606-1
USN-8607-1
USN-8608-1
USN-8609-1
USN-8619-1
USN-8665-1

Produtos afetados

Linuxmint
Linux Kernel
Ubuntu