CVE-2026-80186

A stack-based buffer overflow vulnerability exists in BlueZ, the Linux Bluetooth protocol stack. A remote user within Bluetooth radio range can send a specially crafted Extended Inquiry Response (EIR) packet that causes a buffer overflow when the target device performs Bluetooth discovery. This vulnerability can lead to a Denial of Service (DoS) by crashing the bluetoothd service and may allow for arbitrary code execution.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-25 22:17

Updated : 2026-08-28 21:17


NVD link : CVE-2026-80186

Mitre link : CVE-2026-80186

CVE.ORG link : CVE-2026-80186


JSON object : View

Products Affected

No product.

CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')