Home

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix possible UAF on iso_conn_free This attempt to fix similar issue to sco_conn_free where if the conn->sk is not set to NULL may lead to UAF on iso_conn_free.

PUBLISHED Reserved 2025-04-16 | Published 2025-11-12 | Updated 2025-12-01 | Assigner Linux

Product status

Default status
unaffected

ccf74f2390d60a2f9a75ef496d2564abb478f46a (git) before eba6d787ec117a5d2c60f9644e0a39c18542b6be
affected

ccf74f2390d60a2f9a75ef496d2564abb478f46a (git) before 5319145a07d8bf5b0782b25cb3115825689d42bb
affected

ccf74f2390d60a2f9a75ef496d2564abb478f46a (git) before 80689777919f02328eb873769de4647c9dd3e371
affected

ccf74f2390d60a2f9a75ef496d2564abb478f46a (git) before c92ad1a155ccfa38b87bd1d998287e1c0a24248d
affected

ccf74f2390d60a2f9a75ef496d2564abb478f46a (git) before 9950f095d6c875dbe0c9ebfcf972ec88fdf26fc8
affected

Default status
affected

6.0
affected

Any version before 6.0
unaffected

6.1.156 (semver)
unaffected

6.6.112 (semver)
unaffected

6.12.53 (semver)
unaffected

6.17.3 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/eba6d787ec117a5d2c60f9644e0a39c18542b6be

git.kernel.org/...c/5319145a07d8bf5b0782b25cb3115825689d42bb

git.kernel.org/...c/80689777919f02328eb873769de4647c9dd3e371

git.kernel.org/...c/c92ad1a155ccfa38b87bd1d998287e1c0a24248d

git.kernel.org/...c/9950f095d6c875dbe0c9ebfcf972ec88fdf26fc8

cve.org (CVE-2025-40141)

nvd.nist.gov (CVE-2025-40141)

Download JSON