CVE-2026-74301

UnknownEPSS 0.17%

Last modified

CVE-2026-74301 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: fix URB leak in alloc_mtk_intr_urb error path When btmtk_isopkt_pad() fails, the previously allocated URB is not freed, leaking the urb structure. Add usb_free_urb() before returning the error.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: fix URB leak in alloc_mtk_intr_urb error path When btmtk_isopkt_pad() fails, the previously allocated URB is not freed, leaking the urb structure. Add usb_free_urb() before returning the error.

Metrics

EPSS Probability
0.17%

6.4th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= ceac1cb0259de682d78f5c784ef8e0b13022e9d9, < 2643524743b9cc3c6f5f34cde2a8c627d793f21c; >= ceac1cb0259de682d78f5c784ef8e0b13022e9d9, < 7f206a8d8d82296aa2d30bf5f3e5bb73fc44591d; >= ceac1cb0259de682d78f5c784ef8e0b13022e9d9, < 4e354991da5890d5ce7bfea3f66fb897ae301756; >= ceac1cb0259de682d78f5c784ef8e0b13022e9d9, < f396f4005180928cd9e15e352a6512865d3bc908
LinuxLinux6.11

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-74301?
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: fix URB leak in alloc_mtk_intr_urb error path When btmtk_isopkt_pad() fails, the previously allocated URB is not freed, leaking the urb structure. Add usb_free_urb() before returning the error.
How severe is CVE-2026-74301?
Severity scoring for CVE-2026-74301 is pending analysis. The EPSS model estimates a 0.17% probability of exploitation in the next 30 days.
How do I fix CVE-2026-74301?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-74301?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST