← back
CVE-2025-10456

Bluetooth: Semi-Arbitrary ability to make the BLE Target send disconnection requests

CVSS 7.1 HIGHEPSS 0.2%CWE-190
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.1EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
19 Sep 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability was identified in the handling of Bluetooth Low Energy (BLE) fixed channels (such as SMP or ATT). Specifically, an attacker could exploit a flaw that causes the BLE target (i.e., the device under attack) to attempt to disconnect a fixed channel, which is not allowed per the Bluetooth specification. This leads to undefined behavior, including potential assertion failures, crashes, or memory corruption, depending on the BLE stack implementation.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →