Fedora 43 BlueZ Moderate Out-of-Bounds Read CVE-2026-75032
An out-of-bounds read flaw was found in BlueZ in the AVRCP profile implementation. The vulnerability exists in the parse_media_element() and parse_media_folder() functions in profiles/audio/avrcp.c, where insufficient validation of packet length fields in GetFolderItems responses allows a malicious Bluetooth device within range to cause an out-of-bounds memory read.LinuxSecurity – Security AdvisoriesRead More