{"id":"CVE-2026-80721","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-80721","summary":"Bluetooth: ISO: ensure no dangling hcon references in iso_conn","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: ensure no dangling hcon references in iso_conn\n\nAfter iso_conn_del(), ISO sockets should not dereference the hcon any\nmore.  Currently, clearing iso_conn::hcon relies on iso_conn_del()\nreleasing the last reference to the iso_conn.\n\nSimplify this by explicitly clearing conn->hcon in iso_conn_del(), to\navoid more complex reasoning on races about who holds the last\nreference.","published":"2026-08-28T06:53:17.278Z","modified":"2026-08-31T03:45:43.308114277Z","cvss":{"score":8.8,"severity":"HIGH","vector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"Linux","name":"Kernel","fixedVersion":"6.18.44"}],"fix":null,"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/aa9f7cb2bd3a2be998ceb739fc9a2f986eba43eb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/cdce8af9291d8a1f8916c271de029bf558d9e8ec"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e941799c31f68e67ce0976efb38a79101f921b64"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80721.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-80721"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-31T03:45:43.308114277Z"}}