CVE-2026-68188
CVE-2026-68188: 1 tracked advisory record across Red Hat. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
Red Hat
1 advisory- Advisory severityHigh7.1
High [CVE-2026-68188] Linux kernel Bluetooth RFCOMM: Denial of Service via use-after-free in set_termios
CVE-2026-68188Source published Source updated
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: Fix session UAF in set_termios rfcomm_tty_set_termios() tests dlc->session without rfcomm_mutex and later passes the pointer to rfcomm_send_rpn(). The latter dereferences both session->initiator and session->sock. Meanwhile, krfcommd can unlink the DLC and free the session while holding rfcomm_mutex. Have the TTY path use the helper and drop its unlocked session check. This keeps the session valid through both the frame construction and socket send. A race condition in the `rfcomm_tty_set_termios()` function allows a session to be freed while it is still actively in use. This use-after-free (UAF) vulnerability can be exploited by a local attacker. Successful exploitation leads to a system crash…
- Affected products in this advisory
- Red Hat Enterprise Linux 10
- Red Hat Enterprise Linux 6
- Red Hat Enterprise Linux 7
- Red Hat Enterprise Linux 8
2 more entries in the full advisory.
- Source-reported affected versions
- Affected-version details not available in this record.
- Source-reported fixed versions
- No fixed-version detail extracted. This does not mean no fix exists.
- Mitigation guidance
- To prevent the `rfcomm` kernel module from loading, create a modprobe configuration file. Add the following lines to `/etc/modprobe.d/disable-rfcomm.conf`: ``` install rfcomm /bin/true blacklist rfcomm ``` After saving the file, regenerate the initramfs and reboot the system for the changes to take effect. This action will disable Bluetooth RFCOMM functionality. If the module is currently loaded, unload it with `rmmod rfcomm`; however, a system reboot is recommended to ensure the module is not loaded.
Android app · Google Play
Monitor future Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.