Out-of-bounds read in Linux kernel - CVE-2026-89583
Published: September 12, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to an out-of-bounds read in eir_get_service_data() when processing periodic advertising data containing mismatching Service Data fields. A remote attacker can transmit a crafted periodic advertising payload to disclose sensitive information.
Exploitation requires an ISO broadcast sink to process periodic advertising reports from a remote broadcaster.