Linux: Race can lead to UAF in net/bluetooth/sco.c: sco_sock_connect()
https://seclists.org/oss-sec/2024/q4/130
What a mess:
“the reporter also did not reply to any of linux-distros’ members questions, most notably ‘have you contacted either security () kernel org or the bluetooth maintainers about this issue?’”
“the issue may be the same as CVE-2024-27398”