cve 2025 37792

About this tag
CVE-2025-37792 is a vulnerability in the Realtek btrtl Bluetooth driver that could lead to a potential NULL pointer dereference. Microsoft's MSRC entry identifies Azure Linux as a carrier of the affected upstream Bluetooth code, but this is a product-scoped attestation and does not guarantee that no other Microsoft product contains the same vulnerable code. The tag covers discussions about the scope of this CVE, including whether other Microsoft artifacts might be affected, and the technical details of the btrtl driver fix. It is relevant for security researchers, IT administrators, and users tracking Bluetooth driver vulnerabilities in Linux-based systems.
  1. CVE-2025-37792 Explained: Azure Linux and the Realtek btrtl Bluetooth Driver

    Microsoft’s brief MSRC entry for CVE-2025-37792 — “Bluetooth: btrtl: Prevent potential NULL dereference” — is accurate for the product it names: Azure Linux has been identified as a carrier of the upstream Bluetooth code that required a fix. That attestation, however, is a product‑scoped...