← Back to overview

A stack-based buffer overflow vulnerability has been identified in BlueZ, the Linux Bluetooth protocol stack. An attacker within Bluetooth radio range can exploit this flaw by sending a specially crafted Extended Inquiry Response (EIR) packet during Bluetooth device discovery. The vulnerability triggers a buffer overflow condition that can crash the bluetoothd service, resulting in a Denial of Service (DoS). Beyond DoS, the flaw may also allow for arbitrary code execution on the affected system. The attack requires no authentication and only proximity within Bluetooth range. This affects Linux systems running BlueZ during active Bluetooth discovery operations. The vulnerability has been acknowledged by Red Hat and tracked in their security advisory and Bugzilla systems. A GitHub security advisory has also been published by the BlueZ project maintainers.

Affected products

  • BlueZ
  • Linux Bluetooth protocol stack

Related CVE's

  • CVE-2026-80186

Categories

  • Mobile & IoT
  • Network Infrastructure
  • Operating Systems