In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp l2ca
위협 신호 · CVSS · EPSS · KEV
이론적 심각도 점수
30일 내 악용 확률 예측
실측 악용 기록 없음
2주 이내 패치 — 우선 조치 대상
CVSS 벡터 · 메트릭
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H상세 설명
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp
l2cap_ecred_reconf_rsp() calls l2cap_chan_del() without holding
l2cap_chan_lock(). Every other l2cap_chan_del() caller in the file
acquires the lock first. A remote BLE device can send a crafted
L2CAP ECRED reconfiguration response to corrupt the channel list
while another thread is iterating it.
Add l2cap_chan_hold() and l2cap_chan_lock() before l2cap_chan_del(),
and l2cap_chan_unlock() and l2cap_chan_put() after, matching the
pattern used in l2cap_ecred_conn_rsp() and l2cap_conn_del().
AI 심층 분석
공격 시나리오 · 재현 가능한 PoC 페이로드 · 즉시 적용 가능한 차단 패치를 한 번에 받아 보세요. 보안 운영팀이 그대로 점검·티켓팅에 쓸 수 있는 형태로 정리해 드립니다.
영향받는 제품·버전
- linux linux_kernel5.7 - 5.10.258linux
- linux linux_kernel5.11 - 5.15.209linux
- linux linux_kernel5.16 - 6.1.175linux
- linux linux_kernel6.2 - 6.6.141linux
- linux linux_kernel6.7 - 6.12.91linux
- linux linux_kernel6.13 - 6.18.33linux
- linux linux_kernel6.19 - 7.0.10linux
영향받는 구성 (CPE) 1
- linux linux_kernel≥ 5.7 < 5.10.258cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
참고 자료 15
- https://access.redhat.com/errata/RHSA-2026:42550Third Party Advisory
- https://access.redhat.com/errata/RHSA-2026:42552Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2026-53071Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2492458Third Party Advisory
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-53071.jsonThird Party Advisory
링크 내용 불러오는 중…