An integer overflow condition exists in Bluetooth Host stack, within the bt_br_acl_recv routine a critical path for processing inbound BR/EDR L2CAP traffic.
Metrics
Affected Vendors & Products
References
History
Mon, 15 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Dec 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An integer overflow condition exists in Bluetooth Host stack, within the bt_br_acl_recv routine a critical path for processing inbound BR/EDR L2CAP traffic. | |
| Title | Bluetooth: Integer Overflow in Bluetooth Classic (BR/EDR) L2CAP | |
| Weaknesses | CWE-190 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: zephyr
Published:
Updated: 2025-12-15T20:29:28.601Z
Reserved: 2025-10-21T17:37:08.220Z
Link: CVE-2025-12035
Updated: 2025-12-15T20:29:22.148Z
Status : Received
Published: 2025-12-15T20:15:48.597
Modified: 2025-12-15T20:15:48.597
Link: CVE-2025-12035
No data.
OpenCVE Enrichment
No data.