---
id: CVE-2026-98293
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  Bluetooth: ISO: Fix parent socket leak in iso_conn_ready()

  iso_get_sock() returns the parent socket with a reference held, which is
  dropped by sock_put() once the chil…
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  Bluetooth: ISO: Fix parent socket leak in iso_conn_ready()

  iso_get_sock() returns the parent socket with a reference held, which is
  dropped by sock_put() once the chil…
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 11dc486ed5d4626e6b92a23b67ed76cb6c48bfc9 <
    ea8a262662be62c095789924c11722ecbf40a4de
  - >-
    Linux >= fa224d0c094a458e9ebf5ea9b1c696136b7af427 <
    9228f87365e68a6cae191f57f456e89a6d2167cf
  - >-
    Linux >= fa224d0c094a458e9ebf5ea9b1c696136b7af427 <
    e2b156a8d25966be49c1f809b654a2c4bb16564d
  - >-
    Linux >= fa224d0c094a458e9ebf5ea9b1c696136b7af427 <
    f016daabd4fec4e9b8563f8b6f42eabce0ca66b0
  - >-
    Linux >= fa224d0c094a458e9ebf5ea9b1c696136b7af427 <
    ca18ee413a7cb6f09885778039225e58bae0d607
  - Linux >= 6.6.67 < 6.6.158
  - Linux 6.8
published: '2026-10-06'
updated: '2026-10-06'
sourceUpdated: '2026-10-06T09:18:19.727'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-98293'
references:
  - url: 'https://git.kernel.org/stable/c/9228f87365e68a6cae191f57f456e89a6d2167cf'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/ca18ee413a7cb6f09885778039225e58bae0d607'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/e2b156a8d25966be49c1f809b654a2c4bb16564d'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/ea8a262662be62c095789924c11722ecbf40a4de'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f016daabd4fec4e9b8563f8b6f42eabce0ca66b0'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-10-06T08:50:17.417Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: ISO: Fix parent socket leak in iso_conn_ready()

iso_get_sock() returns the parent socket with a reference held, which is
dropped by sock_put() once the child socket has been set up. The error
path taken when iso_sock_alloc() fails only calls release_sock() and
returns, leaking the reference and thus the parent socket itself.

Drop the reference on that path as well.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
