Buffer Overflow Vulnerability in BlueZ Bluetooth Protocol Stack
CVE-2026-80186
7.6HIGH
What is CVE-2026-80186?
A stack-based buffer overflow vulnerability has been identified in BlueZ, the Bluetooth protocol stack for Linux systems. This flaw allows a remote user within Bluetooth range to send a specially crafted Extended Inquiry Response (EIR) packet. If exploited during the Bluetooth discovery process, it can lead to a buffer overflow, resulting in the crash of the bluetoothd service and potentially enabling arbitrary code execution on the target device. This vulnerability underscores the importance of securing Bluetooth communications and updating to the latest BlueZ version to mitigate risks.