Answer in brief
CVE-2026-64470 records a Unknown severity vulnerability in Bluetooth: btusb: fix use-after-free on marvell probe failure. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2026-64470 records a Unknown severity vulnerability in Bluetooth: btusb: fix use-after-free on marvell probe failure. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <1edd524de5cc8143ece9c42c466346983dc5b5ed || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <0ccb1cb0a464dab78284c34196cd3e8e18bab4c4 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <631de465aba7f8ae46478bf5f598111412e8eff8 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <6e1b10df890f4663cb38af9fc1c93d36747b75af || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <92c736866244340497a8a65afe2ac25354c2bf5e || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <a7e941a395711791c7e98d9870c6562c2c9e9ef2 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <838c917a2f16eefe68def800ebf48a2af591149a || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <c5b600a3c05b1a7a110d558df935a8fc8a471c79 | 1edd524de5cc8143ece9c42c466346983dc5b5ed, 0ccb1cb0a464dab78284c34196cd3e8e18bab4c4, 631de465aba7f8ae46478bf5f598111412e8eff8, 6e1b10df890f4663cb38af9fc1c93d36747b75af, 92c736866244340497a8a65afe2ac25354c2bf5e, a7e941a395711791c7e98d9870c6562c2c9e9ef2, 838c917a2f16eefe68def800ebf48a2af591149a, c5b600a3c05b1a7a110d558df935a8fc8a471c79 |
| Linux/Linuxgeneric | 4.11 | Not reported |
Published upstream
Jul 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 17, 2026
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: fix use-after-free on marvell probe failure Make sure to stop any TX URBs submitted during Marvell OOB wakeup configuration on later probe failures to avoid use-after-free in the completion callback. This issue was reported by Sashiko while reviewing a fix for a wakeup source leak in the btusb probe errors paths.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <1edd524de5cc8143ece9c42c466346983dc5b5ed || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <0ccb1cb0a464dab78284c34196cd3e8e18bab4c4 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <631de465aba7f8ae46478bf5f598111412e8eff8 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <6e1b10df890f4663cb38af9fc1c93d36747b75af || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <92c736866244340497a8a65afe2ac25354c2bf5e || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <a7e941a395711791c7e98d9870c6562c2c9e9ef2 || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <838c917a2f16eefe68def800ebf48a2af591149a || >=a4ccc9e33d2f01532bcceb621ea06bbf4db6efac <c5b600a3c05b1a7a110d558df935a8fc8a471c79 | 1edd524de5cc8143ece9c42c466346983dc5b5ed, 0ccb1cb0a464dab78284c34196cd3e8e18bab4c4, 631de465aba7f8ae46478bf5f598111412e8eff8, 6e1b10df890f4663cb38af9fc1c93d36747b75af, 92c736866244340497a8a65afe2ac25354c2bf5e, a7e941a395711791c7e98d9870c6562c2c9e9ef2, 838c917a2f16eefe68def800ebf48a2af591149a, c5b600a3c05b1a7a110d558df935a8fc8a471c79 |
| Linux/Linuxgeneric | 4.11 | Not reported |
Published upstream
Jul 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 17, 2026
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: fix use-after-free on marvell probe failure Make sure to stop any TX URBs submitted during Marvell OOB wakeup configuration on later probe failures to avoid use-after-free in the completion callback. This issue was reported by Sashiko while reviewing a fix for a wakeup source leak in the btusb probe errors paths.
Quoted source text, attributed separately from HOL analysis.