A vulnerability marked as critical has been reported in Linux Kernel up to 6.12.80/6.18.21/6.19.11. This vulnerability affects the function set_cig_params_sync of the component Bluetooth. Performing a manipulation results in use after free.

This vulnerability was named CVE-2026-43019. The attack needs to be approached within the local network. There is no available exploit.

It is suggested to upgrade the affected component.