Bluetooth Packet Handling Vulnerability in Sony XAV-AX8500 Devices
CVE-2025-5475
What is CVE-2025-5475?
The Sony XAV-AX8500 is susceptible to a vulnerability due to improper handling of Bluetooth packets, allowing network-adjacent attackers to execute arbitrary code. Attackers must pair a malicious Bluetooth device with the target system to exploit this flaw. The vulnerability arises from insufficient validation of user-supplied data, leading to an integer overflow that could be exploited to write to memory and execute code in the context of the elysian-bt-service process. This exposure highlights significant security risks for users relying on Bluetooth functionality.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
XAV-AX8500 2.00.01
References
CVSS V3.1
CVSS V3.0
Timeline
Vulnerability published
