PT-2026-61291 · Linux · Linux

CVE-2026-63974

·

Published

2026-07-19

·

Updated

2026-07-19

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci sync: Set HCI CMD DRAIN WORKQUEUE during device close
Since hci dev close sync() can now be called during the reset path, we should also set HCI CMD DRAIN WORKQUEUE. This avoids queuing timeouts while the hdev workqueue is being drained.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-63974

Affected Products

Linux