Home

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix leaks when hci_cmd_sync_queue_once fails When hci_cmd_sync_queue_once() returns with error, the destroy callback will not be called. Fix leaking references / memory on these failures.

PUBLISHED Reserved 2026-05-01 | Published 2026-05-01 | Updated 2026-05-02 | Assigner Linux

Product status

Default status
unaffected

a106e50be74b0896583f4d010a69f9806e4194f4 (git) before 7fd74178d4b16dcf47179da634ea9d7c02e3608b
affected

a106e50be74b0896583f4d010a69f9806e4194f4 (git) before aca377208e7f7322bf4e107cdec6e7d7e8aa7a88
affected

Default status
affected

6.19
affected

Any version before 6.19
unaffected

6.19.12 (semver)
unaffected

7.0 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/7fd74178d4b16dcf47179da634ea9d7c02e3608b

git.kernel.org/...c/aca377208e7f7322bf4e107cdec6e7d7e8aa7a88

cve.org (CVE-2026-43021)

nvd.nist.gov (CVE-2026-43021)

Download JSON