PT-2024-38103 · Bluetooth · Bluetooth

Published

2024-12-19

·

Updated

2025-05-28

·

CVE-2024-7137

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Bluetooth (affected versions not specified)
Description The issue is related to the L2CAP receive data buffer for L2CAP packets, which is restricted to packet sizes smaller than the maximum supported packet size. Receiving a packet that exceeds the restricted buffer length may cause a crash. A hard reset is required to recover the crashed device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2024-7137

Affected Products

Bluetooth