CVE-2026-45836 | Linux Kernel up to 7.1-rc2 Bluetooth l2cap_sock_get_sndtimeo_cb null pointer dereference (Nessus ID 316804)
A vulnerability classified as critical was found in Linux Kernel up to 6.6.139/6.12.89/6.18.29/7.0.6/7.1-rc2. Affected is the function l2cap_sock_get_sndtimeo_cb of the component Bluetooth. The manipulation results in null pointer dereference.
This vulnerability is cataloged as CVE-2026-45836. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is advised.