In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_sysfs: Fix attempting to call device_add multiple times
device_add shall not be called multiple times as stated in its documentation:
'Do not call this routine or device_register() more than once for any device structure'
Syzkaller reports a bug as follows [1]: ------------[ cut here ]------------ kernel BUG at lib/list_debug.c:33! invalid opcode: 0000 [#1] PREEMPT SMP KASAN [...] Call Trace: <TASK> __list_add include/linux/list.h:69 [inline] list_add_tail include/linux/list.h:102 [inline] kobj_kset_join lib/kobject.c:164 [inline] kobject_add_internal+0x18f/0x8f0 lib/kobject.c:214 kobject_add_varg lib/kobject.c:358 [inline] kobject_add+0x150/0x1c0 lib/kobject.c:410 device_add+0x368/0x1e90 drivers/base/core.c:3452 hci_conn_add_sysfs+0x9b/0x1b0 net/bluetooth/hci_sysfs.c:53 hci_le_cis_estabilished_evt+0x57c/0xae0 net/bluetooth/hci_event.c:6799 hci_le_meta_evt+0x2b8/0x510 net/bluetooth/hci_event.c:7110 hci_event_func net/bluetooth/hci_event.c:7440 [inline] hci_event_packet+0x63d/0xfd0 net/bluetooth/hci_event.c:7495 hci_rx_work+0xae7/0x1230 net/bluetooth/hci_core.c:4007 process_one_work+0x991/0x1610 kernel/workqueue.c:2289 worker_thread+0x665/0x1080 kernel/workqueue.c:2436 kthread+0x2e4/0x3a0 kernel/kthread.c:376 ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:306 </TASK>
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade kernel-livepatch-4.14.296-222.539Upgrade python-perf-debuginfoUpgrade kernel-headersUpgrade kernel-debuginfo-common-x86_64Upgrade perf-debuginfoUpgrade kernel-tools-debuginfoUpgrade kernel-debuginfoUpgrade kernelUpgrade kernel-debuginfo-common-aarch64Upgrade kernel-develUpgrade kernel-toolsUpgrade python-perfUpgrade kernel-tools-develUpgrade perf | May 20, 2026 | May 20, 2026 |
| Debian | — | Upgrade linux | Sep 22, 2025 | Sep 22, 2025 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Sep 18, 2025 |
| Ubuntu | — | Upgrade linux-azure-fipsUpgrade linuxUpgrade linux-ibmUpgrade linux-gkeopUpgrade linux-gcp-fipsUpgrade linux-azure-5.15Upgrade linux-gcpUpgrade linux-bluefieldUpgrade linux-azure-5.4Upgrade linux-azure-4.15Upgrade linux-oracleUpgrade linux-ibm-5.4Upgrade linux-awsUpgrade linux-gcp-4.15Upgrade linux-hwe-5.4Upgrade linux-aws-fipsUpgrade linux-hweUpgrade linux-raspi-5.4Upgrade linux-intel-iotgUpgrade linux-riscv-5.15Upgrade linux-gcp-5.4Upgrade linux-gkeUpgrade linux-realtimeUpgrade linux-lowlatencyUpgrade linux-aws-5.4Upgrade linux-oracle-5.15Upgrade linux-fipsUpgrade linux-raspiUpgrade linux-aws-5.15Upgrade linux-aws-hweUpgrade linux-oracle-5.4Upgrade linux-intel-iotg-5.15Upgrade linux-gcp-5.15Upgrade linux-kvmUpgrade linux-nvidiaUpgrade linux-iotUpgrade linux-xilinx-zynqmpUpgrade linux-lowlatency-hwe-5.15Upgrade linux-hwe-5.15Upgrade linux-azure | Sep 26, 2025 | Sep 18, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Oct 15, 2025 | Sep 18, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub