In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix error code in chan_alloc_skb_cb() The chan_alloc_skb_cb() function is supposed to return error pointers on error. Returning NULL will lead to a NULL dereference.
https://git.kernel.org/stable/c/ecd06ad0823a90b4420c377ef8917e44e23ee841
https://git.kernel.org/stable/c/a78692ec0d1e17a96b09f2349a028878f5b305e4
https://git.kernel.org/stable/c/788ae2ae4cf484e248b5bc29211c7ac6510e3e92
https://git.kernel.org/stable/c/761b7c36addd22c7e6ceb05caaadc3b062d99faa
https://git.kernel.org/stable/c/72d061ee630d0dbb45c2920d8d19b3861c413e54