← العودة للجدول
CVE-2026-5068
CVE-2026-5068 — A remote, unauthenticated BLE peer can trigger a 2-byte out-of-bounds write in t
📅 2026-06-09
🟠 High 🔥 No NVD Exploit Vulnerability CVSS 7.6

📋 الوصف الكامل

A remote, unauthenticated BLE peer can trigger a 2-byte out-of-bounds write in the Bluetooth host during L2CAP LE CoC SDU reassembly. When the application enables segmentation (via chan_ops.alloc_buf) and the chosen RX pool has a user_data_size smaller than 2 bytes, the segmentation counter stored in the net_buf user_data area is written out of bounds in l2cap_chan_le_recv_seg (subsys/bluetooth/ho

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-5068

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-5068 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←