CVE-2025-36911
published 2026-01-15CVE-2025-36911: In key-based pairing, there is a possible ID due to a logic error in the code. This could lead to remote (proximal/adjacent) information disclosure of user's…
PriorityP343high7.1CVSS 3.1
AVAACLPRNUINSUCHILAN
EPSS
6.94%
93.4th percentile
In key-based pairing, there is a possible ID due to a logic error in the code. This could lead to remote (proximal/adjacent) information disclosure of user's conversations and location with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| msrc | cbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0 | — | — |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6fxf-xg6m-34hj: In key-based pairing, there is a possible ID due to a logic error in the code
ghsa_unreviewed·2026-01-15
CVE-2025-36911 [HIGH] GHSA-6fxf-xg6m-34hj: In key-based pairing, there is a possible ID due to a logic error in the code
In key-based pairing, there is a possible ID due to a logic error in the code. This could lead to remote (proximal/adjacent) information disclosure of user's conversations and location with no additional execution privileges needed. User interaction is not needed for exploitation.
OSV
CVE-2025-36911: In key-based pairing, there is a possible ID due to a logic error in the code
osv·2026-01-01
CVE-2025-36911 CVE-2025-36911: In key-based pairing, there is a possible ID due to a logic error in the code
In key-based pairing, there is a possible ID due to a logic error in the code. This could lead to remote (proximal/adjacent) information disclosure of user's conversations and location with no additional execution privileges needed. User interaction is not needed for exploitation.
Microsoft
hv_netvsc: Don't free decrypted memory
vendor_msrc·2024-05-14·CVSS 5.5
CVE-2024-36911 [MEDIUM] CWE-401 hv_netvsc: Don't free decrypted memory
hv_netvsc: Don't free decrypted memory
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
Linux: Linux
Customer Action Required: Yes
No detection rules found.
No public exploits indexed.
Checkpoint
19th January – Threat Intelligence Report
blogs_checkpoint·2026-01-19
CVE-2025-37164 19th January – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 19th January – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 19th January, please download our Threat Intelligence Bulletin.
TOP ATTACKS AND BREACHES
Spanish energy company Endesa has disclosed a data breach after unauthorized access to a commercial platform used to manage customer information. Media report attackers listed over 1 terabyte of data, including IBANs, for sale.
Belgian hospital AZ Monica has experienced a cyberattack that forced the shutdown of IT systems
Bleepingcomputer
Critical WhisperPair flaw lets hackers track, eavesdrop via Bluetooth audio devices
blogs_bleepingcomputer·2026-01-15·CVSS 7.1
CVE-2025-36911 [HIGH] Critical WhisperPair flaw lets hackers track, eavesdrop via Bluetooth audio devices
## Critical WhisperPair flaw lets hackers track, eavesdrop via Bluetooth audio devices
## Sergiu Gatlan
Security researchers have discovered a critical vulnerability in Google's Fast Pair protocol that can allow attackers to hijack Bluetooth audio accessories, track users, and eavesdrop on their conversations.
The flaw (tracked as CVE-2025-36911 and dubbed WhisperPair ) affects hundreds of millions of wireless headphones, earbuds, and speakers from multiple manufacturers that support Google's Fast Pair feature. It affects users regardless of their smartphone operating system because the flaw lies in the accessories themselves, meaning that iPhone users with vulnerable Bluetooth devices are equally at risk.
Researchers with KU Leuven's Computer Security and Industrial Cryptography group
2026-01-15
Published