---
cve: "CVE-2026-64471"
severity: "LOW"
cvss: 3.1
epss: "18%"
vendor: "Linux"
kev: false
exploited: false
published: "2026-07-25 10:17:32"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-10T10:58:03+02:00"
---

# CVE-2026-64471

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: btusb: fix use-after-free on registration failure

Make sure to release the sibling interfaces in case controller
registration fails to avoid use-after-free and double-free when they are
eventually disconnected.

This issue was reported by Sashiko while reviewing a fix for a wakeup
source leak in the btusb probe errors paths.

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.261
- Kernel ≥ 5.15.212
- Kernel ≥ 6.1.178
- Kernel ≥ 6.6.145
- Kernel ≥ 6.12.96
- Kernel ≥ 6.18.39
- Kernel ≥ 7.1.4

## Referenzen

- <https://git.kernel.org/stable/c/e09ac7d0c6859a360bf36e7104aef03f88184e0b>
- <https://git.kernel.org/stable/c/468fcdfaeb937163dd250773a9fed17ab1fa203c>
- <https://git.kernel.org/stable/c/1ce5012944afaddbda939ec6bae9800fce84abbc>
- <https://git.kernel.org/stable/c/e6313b800da61a26c2fdd5eba0105e197c0ab3bc>
- <https://git.kernel.org/stable/c/14e02f1449ba425a44dedbec9a21efafb056e09f>
- <https://git.kernel.org/stable/c/8db0ce3de78367f61c2970c0f16d9adee8830a23>
- <https://git.kernel.org/stable/c/da7d7758fe884b256ddc9fef562e5ddef7952383>
- <https://git.kernel.org/stable/c/eedc6867ebad73edbfaf9a0a65fbef7115cc4753>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-64471) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
