In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free Fix potential use-after-free in l2cap_le_command_rej.
Update Linux/Linux to e76bab1b7afa580cd76362540fc37551ada4359b if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanBluetooth: L2CAP: Fix use-after-free affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free Fix potential use-after-free in l2cap_le_command_rej.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=71fb419724fadab4efdf98210aa3fe053bd81d29 <e76bab1b7afa580cd76362540fc37551ada4359b || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <1a40c56e8bff3e424724d78a9a6b3272dd8a371d || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <fe49aa73cca6608714477b74bfc6874b9db979df || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <2958cf9f805b9f0bdc4a761bf6ea281eb8d44f8e || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <548a6b64b3c0688f01119a6fcccceb41f8c984e4 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <149daab45922ab1ac7f0cbeacab7251a46bf5e63 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <255be68150291440657b2cdb09420b69441af3d8 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <f752a0b334bb95fe9b42ecb511e0864e2768046f |
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free Fix potential use-after-free in l2cap_le_command_rej.
Update Linux/Linux to e76bab1b7afa580cd76362540fc37551ada4359b if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanBluetooth: L2CAP: Fix use-after-free affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free Fix potential use-after-free in l2cap_le_command_rej.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=71fb419724fadab4efdf98210aa3fe053bd81d29 <e76bab1b7afa580cd76362540fc37551ada4359b || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <1a40c56e8bff3e424724d78a9a6b3272dd8a371d || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <fe49aa73cca6608714477b74bfc6874b9db979df || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <2958cf9f805b9f0bdc4a761bf6ea281eb8d44f8e || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <548a6b64b3c0688f01119a6fcccceb41f8c984e4 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <149daab45922ab1ac7f0cbeacab7251a46bf5e63 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <255be68150291440657b2cdb09420b69441af3d8 || >=71fb419724fadab4efdf98210aa3fe053bd81d29 <f752a0b334bb95fe9b42ecb511e0864e2768046f |
| e76bab1b7afa580cd76362540fc37551ada4359b, 1a40c56e8bff3e424724d78a9a6b3272dd8a371d, fe49aa73cca6608714477b74bfc6874b9db979df, 2958cf9f805b9f0bdc4a761bf6ea281eb8d44f8e, 548a6b64b3c0688f01119a6fcccceb41f8c984e4, 149daab45922ab1ac7f0cbeacab7251a46bf5e63, 255be68150291440657b2cdb09420b69441af3d8, f752a0b334bb95fe9b42ecb511e0864e2768046f |
| Linux/Linuxgeneric | 3.14 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| e76bab1b7afa580cd76362540fc37551ada4359b, 1a40c56e8bff3e424724d78a9a6b3272dd8a371d, fe49aa73cca6608714477b74bfc6874b9db979df, 2958cf9f805b9f0bdc4a761bf6ea281eb8d44f8e, 548a6b64b3c0688f01119a6fcccceb41f8c984e4, 149daab45922ab1ac7f0cbeacab7251a46bf5e63, 255be68150291440657b2cdb09420b69441af3d8, f752a0b334bb95fe9b42ecb511e0864e2768046f |
| Linux/Linuxgeneric | 3.14 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard