PT-2025-48745 · Espressif · Esp32+1

Published

2025-12-02

·

Updated

2026-04-17

·

CVE-2025-66409

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions ESF-IDF versions 5.5.1 through 5.1.6
Description ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. When AVRCP is enabled on ESP32, receiving a malformed VENDOR DEPENDENT command from a peer device can cause the Bluetooth stack to access memory before validating the command buffer length. This may lead to an out-of-bounds read, potentially exposing unintended memory content or causing unexpected behavior.
Recommendations Versions prior to 5.5.2 should be used.

Exploit

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2025-66409
GHSA-QHF9-VR2H-JH96

Affected Products

Esf-Idf
Esp32