// 2 CRITICAL · 2 ZERO-DAY · 6 CVE · 6 EXPLOIT · 1 ADVISORY IN THE LAST 24H
bluetoothCRITICAL

BlueZ: A2DP Buffer Overflow Enables Root RCE After Pairing

ZDI-26-589 discloses a stack-based buffer overflow in the BlueZ Bluetooth stack's A2DP module, allowing remote code execution as root…

Aug 25, 2026views - 1k

CYBERSECCRITICAL

Sony XAV-9500ES: AVRCP Heap Overflow Enables RCE via Bluetooth

The ZDI-26-475 vulnerability (CVE-2026-18282, CVSS 8.0) in the Sony XAV-9500ES Bluetooth AVRCP parser allows remote code execution aft…

Aug 12, 2026views - 1.1k

VULNCRITICAL

Sony XAV-9500ES: Bluetooth RCE Found at Pwn2Own, Fix Available

A heap-based buffer overflow in the AVRCP parser of the Sony XAV-9500ES allows remote code execution by an attacker with a paired Blue…

Aug 05, 2026views - 1.4k

CYBERSECCRITICAL

Sony XAV-9500ES: Bluetooth Turns Weapon — From Pwn2Own to the Parking Lot

ZDI advisory ZDI-26-475 details a heap-based buffer overflow in the AVRCP parser of the Sony XAV-9500ES head unit, enabling remote cod…

Jul 30, 2026views - 1.3k

CYBERSEC

Apple Beats: Bluetooth Flaw Turns Headphones Into Spy Microphones

Apple patched CVE-2025-20701 in Beats Studio Buds: attackers within Bluetooth range could eavesdrop on conversations by exploiting a f…

Jun 18, 2026views - 922