PT-2025-27704 · Linux+6 · Linux Kernel+6

Published

2025-06-03

·

Updated

2026-05-26

·

CVE-2025-38118

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.15.0
Description: A use-after-free vulnerability has been identified in the Linux kernel's Bluetooth management functionality. The issue arises from the mgmt remove adv monitor complete function, which can lead to crashes. The vulnerability is caused by the use of mgmt pending add in MGMT OP REMOVE ADV MONITOR, resulting in a slab-use-after-free error. This vulnerability can be exploited, but no specific details about real-world incidents or the number of potentially affected devices are provided.
Recommendations: For Linux kernel versions prior to 6.15.0, update to version 6.15.0 or later to resolve the issue. As a temporary workaround, consider disabling the Bluetooth management functionality until a patch is available. Restrict access to the vulnerable mgmt remove adv monitor complete function to minimize the risk of exploitation. Avoid using the mgmt pending add function in the affected Bluetooth management API endpoint until the issue is resolved.

Exploit

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-64502
AZL-72719
BDU:2025-09003
CVE-2025-38118
DLA-4328-1
DSA-5973-1
ECHO-3EA4-C9B1-82E0
MGASA-2025-0218
MGASA-2025-0219
OESA-2025-1823
OESA-2025-1824
OESA-2025-1870
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
USN-7769-1
USN-7769-2
USN-7769-3
USN-7770-1
USN-7771-1
USN-7789-1
USN-7789-2
USN-7861-1
USN-7861-2
USN-7861-3
USN-7861-4
USN-7861-5
USN-7864-1
USN-7935-1
USN-7940-1
USN-7940-2

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu