Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-19774

Опубликовано: 15 сент. 2026
Источник: redhat
CVSS3: 8
EPSS Низкий

Описание

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploit this vulnerability. The specific flaw exists within the handling of the stream endpoints. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-29429.

A flaw was found in BlueZ. This vulnerability, a stack-based buffer overflow in the Advanced Audio Distribution Profile (A2DP) stack, allows a network-adjacent attacker to execute arbitrary code. By pairing a malicious Bluetooth device with the target system, an attacker can exploit improper validation of user-supplied data length. Successful exploitation leads to arbitrary code execution with root privileges.

Меры по смягчению последствий

To mitigate this vulnerability, disable the Bluetooth service if it is not required. This can be achieved by stopping and disabling the bluetooth service.

sudo systemctl stop bluetooth sudo systemctl disable bluetooth

Disabling the Bluetooth service will prevent all Bluetooth functionality on the system. A system reboot may be required for the changes to take full effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10bluezAffected
Red Hat Enterprise Linux 6bluezOut of support scope
Red Hat Enterprise Linux 7bluezAffected
Red Hat Enterprise Linux 8bluezAffected
Red Hat Enterprise Linux 9bluezAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-120
https://bugzilla.redhat.com/show_bug.cgi?id=2534102bluez: BlueZ: Arbitrary Code Execution via A2DP Stack-based Buffer Overflow

EPSS

Процентиль: 26%
0.00328
Низкий

8 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
5 дней назад

(BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerabi ...)

CVSS3: 7.1
nvd
5 дней назад

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploit this vulnerability. The specific flaw exists within the handling of the stream endpoints. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-29429.

msrc
2 дня назад

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability

CVSS3: 7.1
debian
5 дней назад

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerabi ...

CVSS3: 7.1
github
5 дней назад

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploit this vulnerability. The specific flaw exists within the handling of the stream endpoints. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-29429.

EPSS

Процентиль: 26%
0.00328
Низкий

8 High

CVSS3