CVE-2024-26886

Updated: 2025-08-20 00:40:31.862446

Description:

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: af_bluetooth: Fix deadlock Attemting to do sock_lock on .recvmsg may cause a deadlock as shown bellow, so instead of using sock_sock this uses sk_receive_queue.lock on bt_sock_ioctl to avoid the UAF: INFO: task kworker/u9:1:121 blocked for more than 30 seconds. Not tainted 6.7.6-lemon #183 Workqueue: hci0 hci_rx_work Call Trace: <TASK> __schedule+0x37d/0xa00 schedule+0x32/0xe0 __lock_sock+0x68/0xa0 ? __pfx_autoremove_wake_function+0x10/0x10 lock_sock_nested+0x43/0x50 l2cap_sock_recv_cb+0x21/0xa0 l2cap_recv_frame+0x55b/0x30a0 ? psi_task_switch+0xeb/0x270 ? finish_task_switch.isra.0+0x93/0x2a0 hci_rx_work+0x33a/0x3f0 process_one_work+0x13a/0x2f0 worker_thread+0x2f0/0x410 ? __pfx_worker_thread+0x10/0x10 kthread+0xe0/0x110 ? __pfx_kthread+0x10/0x10 ret_from_fork+0x2c/0x50 ? __pfx_kthread+0x10/0x10 ret_from_fork_asm+0x1b/0x30 </TASK>


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x NONE 0.0
CVSS Version 3.x MEDIUM 5.3

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 5.3 MEDIUM Released CLSA-2025:1743193221 2024-08-01 14:27:43
CentOS 6 ELS kernel 2.6.32 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
CentOS 7 ELS kernel 3.10.0 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
CentOS 8.4 ELS kernel 4.18.0 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
CentOS 8.5 ELS kernel 4.18.0 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
CentOS Stream 8 ELS kernel 4.18.0 5.3 MEDIUM Ignored 2024-09-11 12:12:19 Ignored due to low severity
CloudLinux 6 ELS kernel 2.6.32 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
CloudLinux 7 ELS kernel 3.10.0 5.3 MEDIUM Ignored 2024-09-11 12:12:19 Ignored due to low severity
Oracle Linux 6 ELS kernel 2.6.32 5.3 MEDIUM Ignored 2024-09-11 12:12:20 Ignored due to low severity
Ubuntu 16.04 ELS linux-hwe 4.15.0 5.3 MEDIUM Released CLSA-2024:1721664120 2024-07-22 14:23:58
Total: 12