LOWVulnerability

CVE-2026-74304

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: fix NULL pointer dereference in qca_setup() for non-serdev device hu->serdev is NULL for hci_uart attached via non-serdev paths, but qca_setup() unconditionally calls serdev_device_get_drvdata(hu->serdev) and dereferences the result, causing a NULL pointer dereference. Fix by guarding the dereference with a NULL check, consistent with the rest of qca_setup().

Properties

last_source
NVD
cve_id
CVE-2026-74304
signal_observed_at
2026-09-25T21:30:02+00:00
retrieved_at
2026-09-25T21:30:02+00:00
published_at
2026-08-15T06:22:30.037
last_modified
2026-09-25T15:17:55.293

Related Entities (1)

DESCRIBED_BY (1)

→[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-74304 — Ninja Signal Threat Intelligence | Ninja Signal