PT-2025-26092 · Linux+3 · Linux Kernel+3

Published

2022-06-03

·

Updated

2026-05-26

·

CVE-2022-50166

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel's Bluetooth functionality has been identified. When the HCI work queue is drained, only queue chained work is allowed, but another delayed work can still queue commands to this drained workqueue, resulting in an error. This issue can cause a deadlock and has been observed with an error report indicating a command timeout. The vulnerability affects the HCI command, event, and data packet processing workqueue.
Recommendations To fix this issue, a new HCI DRAIN WQ flag can be added to prevent queuing the timeout workqueue while the command workqueue is draining. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-70358
BDU:2026-05785
CVE-2022-50166
RHSA-2023:2458
RHSA-2023_2458
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1

Affected Products

Debian
Linux Kernel
Red Hat
Suse