> USN-8908-1: BlueZ vulnerabilities
[DATE: 08/10/2026 21:50]
[LANGUAGE: EN]
Michael Bommarito discovered that BlueZ incorrectly handled codec
capability storage in the A2DP profile. An attacker could possibly
use this issue to cause a stack buffer overflow, resulting in a denial
of service or arbitrary code execution. This issue only affected Ubuntu
20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 26.04 LTS.
(CVE-2026-19774)
It was discovered that BlueZ incorrectly handled packet length validation.
An attacker could possibly use this issue to read out of bounds memory,
causing a crash or exposing sensitive information. (CVE-2026-75032)
It was discovered that BlueZ incorrectly handled crafted XML input. An
attacker could possibly use this issue to crash BlueZ, resulting in a
denial of service. (CVE-2026-80185)
It was discovered that BlueZ incorrectly parsed remote names from Extended
Inquiry Response data. An attacker could possibly use this issue to cause a
stack buffer overflow, resulting in a denial of service or arbitrary code
execution. (CVE-2026-80186)
Alexandro Calo discovered that BlueZ incorrectly parsed certain responses
in the AVRCP profile. An attacker could possibly use this issue to access
out of bounds memory, causing a crash or exposing sensitive information.
(CVE-2026-85218)