Impact
The vulnerability is a use‑after‑free bug in Android’s Bluetooth handler. A logic error can cause the callback to reference freed memory, letting an attacker execute arbitrary code. The flaw grants full code‑execution capability without requiring any privilege escalation and does not need the victim to interact with the device.
Affected Systems
Google Android devices that implement the affected Bluetooth firmware. No specific version information is supplied, so all Android platforms using this Bluetooth stack are potentially impacted.
Risk and Exploitability
The CVSS score is not listed, but the risk is high due to the nature of the flaw: remote code execution with no privilege escalation and no user interaction required. The EPSS score is unavailable, and the vulnerability is not currently in the CISA KEV catalog, suggesting it may not yet have seen widespread exploitation. Nevertheless, the attack vector is likely via an active Bluetooth connection, enabling an adversary to trigger the logic error from a remote device. Attackers could potentially run malicious code in the context of the Android system process that owns the Bluetooth stack.
OpenCVE Enrichment