PT-2026-98773 · Linux · Linux

CVE-2026-98111

·

Published

2026-09-25

·

Updated

2026-09-30

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Bluetooth component where the btintel parse version tlv() function fails to ensure that the value length is sufficient for the specific Type-Length-Value (TLV) type. This lack of validation can lead to an out-of-bounds read when using get unaligned le16(), get unaligned le32(), or memcpy(). TLV is a data encoding scheme used to represent data as a triplet consisting of a type, a length, and the actual value.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-98111

Affected Products

Linux