Platform Packages Modules Bluetooth vulnerabilities
119 known vulnerabilities affecting platform/packages_modules_bluetooth.
Total CVEs
119
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
UNKNOWN119
Vulnerabilities
Page 2 of 6
CVE-2025-0084P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-01+2 more2025-03-01
CVE-2025-0084 CVE-2025-0084: In multiple locations, there is a possible out of bounds write due to a use after free
In multiple locations, there is a possible out of bounds write due to a use after free. This could lead to remote code execution over Bluetooth, if HFP support is enabled, with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-48593P3UNKNOWN≥ 16-next:0, < 16-next:2025-11-01≥ 15:0, < 15:2025-11-01+3 more2025-11-01
CVE-2025-48593 CVE-2025-48593: In bta_hf_client_cb_init of bta_hf_client_main
In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2024-23717P3UNKNOWN≥ 14-next:0, < 14-next:2024-03-01≥ 13:0, < 13:2024-03-01+1 more2024-03-01
CVE-2024-23717 CVE-2024-23717: In access_secure_service_from_temp_bond of btm_sec
In access_secure_service_from_temp_bond of btm_sec.cc, there is a possible way to achieve keystroke injection due to improper input validation. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2024-34722P3UNKNOWN≥ 15-next:0, < 15-next:2025-01-01≥ 13:0, < 13:2025-01-01+1 more2025-01-01
CVE-2024-34722 CVE-2024-34722: In smp_proc_rand of smp_act
In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect implementation of a protocol. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2024-43770P3UNKNOWN≥ 15-next:0, < 15-next:2025-01-01≥ 15:0, < 15:2025-01-01+2 more2025-01-01
CVE-2024-43770 CVE-2024-43770: In gatts_process_find_info of gatt_sr
In gatts_process_find_info of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2024-43771P3UNKNOWN≥ 15-next:0, < 15-next:2025-01-01≥ 15:0, < 15:2025-01-01+2 more2025-01-01
CVE-2024-43771 CVE-2024-43771: In gatts_process_read_req of gatt_sr
In gatts_process_read_req of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2024-43096P3UNKNOWN≥ 15-next:0, < 15-next:2025-01-01≥ 15:0, < 15:2025-01-01+2 more2025-01-01
CVE-2024-43096 CVE-2024-43096: In build_read_multi_rsp of gatt_sr
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-40129P3UNKNOWN≥ 13:0, < 13:2023-10-012023-10-01
CVE-2023-40129 CVE-2023-40129: In build_read_multi_rsp of gatt_sr
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-22412P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-012025-03-01
CVE-2025-22412 CVE-2025-22412: In multiple functions of sdp_server
In multiple functions of sdp_server.cc, there is a possible use after free due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-22411P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-012025-03-01
CVE-2025-22411 CVE-2025-22411: In process_service_attr_rsp of sdp_discovery
In process_service_attr_rsp of sdp_discovery.cc, there is a possible use after free due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-21273P3UNKNOWN≥ 13-next:0, < 13-next:2023-08-01≥ 13:0, < 13:2023-08-012023-08-01
CVE-2023-21273 CVE-2023-21273: In SDP_AddAttribute of sdp_db
In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-0093P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-01+2 more2025-03-01
CVE-2025-0093 CVE-2025-0093: In handleBondStateChanged of AdapterService
In handleBondStateChanged of AdapterService.java, there is a possible unapproved data access due to a missing permission check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2023-21108P3UNKNOWN≥ 13-next:0, < 13-next:2023-06-01≥ 13:0, < 13:2023-06-012023-06-01
CVE-2023-21108 CVE-2023-21108: In sdpu_build_uuid_seq of sdp_discovery
In sdpu_build_uuid_seq of sdp_discovery.cc, there is a possible out of bounds write due to a use after free. This could lead to remote code execution over Bluetooth, if HFP support is enabled, with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-35673P3UNKNOWN≥ 13-next:0, < 13-next:2023-09-01≥ 13:0, < 13:2023-09-012023-09-01
CVE-2023-35673 CVE-2023-35673: In build_read_multi_rsp of gatt_sr
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-35658P3UNKNOWN≥ 13-next:0, < 13-next:2023-09-01≥ 13:0, < 13:2023-09-012023-09-01
CVE-2023-35658 CVE-2023-35658: In gatt_process_prep_write_rsp of gatt_cl
In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible privilege escalation due to a use after free. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-35684P3UNKNOWN≥ 13-next:0, < 13-next:2023-09-01≥ 13:0, < 13:2023-09-012023-09-01
CVE-2023-35684 CVE-2023-35684: In avdt_msg_asmbl of avdt_msg
In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to an integer overflow. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2023-40087P3UNKNOWN≥ 14-next:0, < 14-next:2023-12-01≥ 13:0, < 13:2023-12-01+1 more2023-12-01
CVE-2023-40087 CVE-2023-40087: In transcodeQ*ToFloat of btif_avrcp_audio_track
In transcodeQ*ToFloat of btif_avrcp_audio_track.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-22404P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-012025-03-01
CVE-2025-22404 CVE-2025-22404: In avct_lcb_msg_ind of avct_lcb_act
In avct_lcb_msg_ind of avct_lcb_act.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-22410P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-012025-03-01
CVE-2025-22410 CVE-2025-22410: In multiple locations, there is a possible way to execute arbitrary code due to a use after free
In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-22405P3UNKNOWN≥ 15-next:0, < 15-next:2025-03-01≥ 15:0, < 15:2025-03-012025-03-01
CVE-2025-22405 CVE-2025-22405: In multiple locations, there is a possible way to execute arbitrary code due to a use after free
In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv