CVE-2026-74532
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: Validate length before parsing diagnostics TLV bti
CVSS
—
No CVSS
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 15, 2026 · Last modified: Aug 15, 2026
Not enough EPSS history yet.
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: Validate length before parsing diagnostics TLV btintel_diagnostics() accesses tlv->val[0] without first validating that the diagnostics VSE is long enough to contain that field, so may cause reading data beyond the received frame. Fix by validating the length before access.
- git.kernel.orghttps://git.kernel.org/stable/c/6ec9c3dc52302b891513f608f5fb478349b15ab3
- git.kernel.orghttps://git.kernel.org/stable/c/b640ff9af3c809ff5ea2077fbba17df1594ec1e4
- git.kernel.orghttps://git.kernel.org/stable/c/c31be902ccbbb0b2c23159a1481dce80d1f9753d
- git.kernel.orghttps://git.kernel.org/stable/c/c618a9a5b08ea2e17bddf4e948be9f75d408fca4
- git.kernel.orghttps://git.kernel.org/stable/c/dd20e30bdbd707ea8ced581f3d7f9e9854634b17
No related CVEs by CWE or product.