CVE-2026-46140 | Linux Kernel up to 6.12.87/6.18.29/7.0.6/7.1-rc2 Bluetooth btmtk_usb_hci_wmt_sync out-of-bounds
A vulnerability classified as critical has been found in Linux Kernel up to 6.12.87/6.18.29/7.0.6/7.1-rc2. Affected is the function btmtk_usb_hci_wmt_sync of the component Bluetooth. This manipulation causes out-of-bounds read.
This vulnerability appears as CVE-2026-46140. The attacker needs to be present on the local network. There is no available exploit.
It is recommended to upgrade the affected component.