CVE-2026-43017 | Linux Kernel up to 6.19.11 Bluetooth mesh_send adv_data[] buffer overflow
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. This affects the function mesh_send of the component Bluetooth. Such manipulation of the argument adv_data[] leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2026-43017. The attack can only be initiated within the local network. No exploit exists.
The affected component should be upgraded.