In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().
Update Linux/Linux to fd072f833147b0bc10c43a454624cb99d02f3fc7 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanBluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() affects Linux/Linux (generic), Linux/Linux (generic). Severity is medium. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().
AI coding agents often install or upgrade packages automatically in generic. A medium vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=8d836d71e2223b8961b21112bb4ce89ef8231682 <fd072f833147b0bc10c43a454624cb99d02f3fc7 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <6e8d1a2a677a81caa60cf0aabd4217bd585fbba1 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <e1863e7480feddb90125d0dd5a1b572972d75908 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <cf1fd517f892ded88168df878f834b625133f86d || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <58dc5e3d8768e121907608e6e196a908512fb083 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <32bd343803d4ba47cc516f9d5f037f01b855d767 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <a93d66907dd4d29b65c9797a93784bf61906d6d6 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <78a88d43dab8d23aeef934ed8ce34d40e6b3d613 |
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().
Update Linux/Linux to fd072f833147b0bc10c43a454624cb99d02f3fc7 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanBluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() affects Linux/Linux (generic), Linux/Linux (generic). Severity is medium. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the same NULL guard already present in l2cap_sock_resume_cb() and l2cap_sock_ready_cb().
AI coding agents often install or upgrade packages automatically in generic. A medium vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=8d836d71e2223b8961b21112bb4ce89ef8231682 <fd072f833147b0bc10c43a454624cb99d02f3fc7 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <6e8d1a2a677a81caa60cf0aabd4217bd585fbba1 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <e1863e7480feddb90125d0dd5a1b572972d75908 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <cf1fd517f892ded88168df878f834b625133f86d || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <58dc5e3d8768e121907608e6e196a908512fb083 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <32bd343803d4ba47cc516f9d5f037f01b855d767 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <a93d66907dd4d29b65c9797a93784bf61906d6d6 || >=8d836d71e2223b8961b21112bb4ce89ef8231682 <78a88d43dab8d23aeef934ed8ce34d40e6b3d613 |
| fd072f833147b0bc10c43a454624cb99d02f3fc7, 6e8d1a2a677a81caa60cf0aabd4217bd585fbba1, e1863e7480feddb90125d0dd5a1b572972d75908, cf1fd517f892ded88168df878f834b625133f86d, 58dc5e3d8768e121907608e6e196a908512fb083, 32bd343803d4ba47cc516f9d5f037f01b855d767, a93d66907dd4d29b65c9797a93784bf61906d6d6, 78a88d43dab8d23aeef934ed8ce34d40e6b3d613 |
| Linux/Linuxgeneric | 3.13 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| fd072f833147b0bc10c43a454624cb99d02f3fc7, 6e8d1a2a677a81caa60cf0aabd4217bd585fbba1, e1863e7480feddb90125d0dd5a1b572972d75908, cf1fd517f892ded88168df878f834b625133f86d, 58dc5e3d8768e121907608e6e196a908512fb083, 32bd343803d4ba47cc516f9d5f037f01b855d767, a93d66907dd4d29b65c9797a93784bf61906d6d6, 78a88d43dab8d23aeef934ed8ce34d40e6b3d613 |
| Linux/Linuxgeneric | 3.13 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard