Vulnerability Bulletins

CVE-2026-43134

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: L2CAP: Fix missing key size check for L2CAP_LE_CONN_REQ

This adds a check for encryption key size upon receiving
L2CAP_LE_CONN_REQ which is required by L2CAP/LE/CFC/BV-15-C which
expects L2CAP_CR_LE_BAD_KEY_SIZE.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-43134