Answer in brief
CVE-2026-98293 records a Unknown severity vulnerability in Bluetooth: ISO: Fix parent socket leak in iso_conn_ready(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=11dc486ed5d4626e6b92a23b67ed76cb6c48bfc9 <ea8a262662be62c095789924c11722ecbf40a4de || >=fa224d0c094a458e9ebf5ea9b1c696136b7af427 <9228f87365e68a6cae191f57f456e89a6d2167cf || >=fa224d0c094a458e9ebf5ea9b1c696136b7af427 <e2b156a8d25966be49c1f809b654a2c4bb16564d || >=fa224d0c094a458e9ebf5ea9b1c696136b7af427 <f016daabd4fec4e9b8563f8b6f42eabce0ca66b0 || >=fa224d0c094a458e9ebf5ea9b1c696136b7af427 <ca18ee413a7cb6f09885778039225e58bae0d607 || >=6.6.67 <6.6.158 | ea8a262662be62c095789924c11722ecbf40a4de, 9228f87365e68a6cae191f57f456e89a6d2167cf, e2b156a8d25966be49c1f809b654a2c4bb16564d, f016daabd4fec4e9b8563f8b6f42eabce0ca66b0, ca18ee413a7cb6f09885778039225e58bae0d607, 6.6.158 |
| Linux/Linuxgeneric | 6.8 | Not reported |
Published upstream
Oct 6, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Oct 6, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Oct 6, 2026
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix parent socket leak in iso_conn_ready() iso_get_sock() returns the parent socket with a reference held, which is dropped by sock_put() once the child socket has been set up. The error path taken when iso_sock_alloc() fails only calls release_sock() and returns, leaking the reference and thus the parent socket itself. Drop the reference on that path as well.
Quoted source text, attributed separately from HOL analysis.