PT-2026-34417 · Linux · Linux Kernel

Published

2026-04-22

·

Updated

2026-06-05

·

CVE-2026-31512

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Bluetooth L2CAP component where the l2cap ecred data rcv() function reads the SDU length field from skb->data using get unaligned le16() without verifying that the socket buffer contains at least 2 bytes. If the skb->len variable is less than 2, the system reads past the valid data in the socket buffer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-31512
ECHO-83B8-A506-44F2
OESA-2026-2581

Affected Products

Linux Kernel