AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-74303

UNKNOWN · CVSS N/A

Source: NVD + CISA KEV + EPSS · Published 2026-08-15 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The vulnerability affects the Linux kernel's Bluetooth subsystem, specifically in the hci_qca driver, where a NULL pointer dereference occurs when handling non-serdev devices. This flaw can lead to system crashes or instability when Bluetooth devices are connected through non-standard paths. Organizations using Linux systems with Bluetooth capabilities should prioritize addressing this issue to maintain system reliability and prevent potential disruptions.

CVE
CVE-2026-74303
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: fix NULL pointer dereference in qca_dmp_hdr() for non-serdev device hu->serdev is NULL for hci_uart attached via non-serdev paths, but qca_dmp_hdr() unconditionally dereferences hu->serdev->dev.driver->name, causing a NULL pointer dereference. Fix by guarding the dereference with a NULL check and falling back to "hci_ldisc_qca" for the non-serdev case.