CVE 7.6 HIGH

Bluetooth: bt_conn_tx_processor unsafe handling_CVE-2025-7403

7.6 / 10
HIGH
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

Description

Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes are attacker-controlled, enabling precise memory corruption.

Basic Information

ID CVE-2025-7403
Source zephyr
Published Sep 19, 2025 at 05:19

Affected Product

Vendor zephyrproject-rtos
Product Zephyr
Version *
Affected Versions zephyrproject-rtos Zephyr *

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.