CVE-2026-97907
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: Don't leak return code when parsing firmware format v
CVSS
—
Sin CVSS
EPSS
—
KEV
—
Exploit Today
0
0-100
Publicado: 25 sept 2026 · Última mod.: 25 sept 2026
Sin historial EPSS suficiente todavía.
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: Don't leak return code when parsing firmware format v2 When key_id from chip is zero, rtlbt_parse_firmware_v2() intentionally ignores all security headers. However, the implementation simply breaks from a switch statement and leaks uninitialized return code `rc' (if the first section is a security one) or the previous section's `rc'. Fix it by really skipping a loop with `continue'. For consistency and readability, also do the same for the default case.
- git.kernel.orghttps://git.kernel.org/stable/c/422f6547259654bae690713614c794dd1e2c0a0b
- git.kernel.orghttps://git.kernel.org/stable/c/83e3e515fd261600ed8491fb0a8bcdfb115c904e
- git.kernel.orghttps://git.kernel.org/stable/c/90f3a142b5f8596a565b8e080d18a8050be6edef
- git.kernel.orghttps://git.kernel.org/stable/c/c4249cf6e80b1bd62a6a409aaabe760fe025dac3
Sin CVEs relacionados por CWE o producto.