{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aaio-libsaiosmtpd/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:aio-libs:aiosmtpd:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":5.3,"id":"CVE-2024-27305"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["BlueZ"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Linux Foundation"],"content_html":"\u003cp\u003eThe BlueZ Bluetooth protocol stack, the standard implementation for Linux systems, contains a critical vulnerability (CVE-2024-27305) that enables unauthenticated remote code execution. An attacker positioned within the physical Bluetooth transmission range can exploit this flaw by sending specifically crafted Bluetooth requests to the target device. Because the bluez daemon often operates with elevated privileges, successful exploitation grants the attacker administrative control over the underlying Linux host. This issue affects various Linux distributions utilizing the BlueZ stack and poses a significant risk to mobile devices, workstations, and IoT hardware that maintain persistent Bluetooth connectivity. Defenders should prioritize patching BlueZ to the latest version and, where feasible, disable Bluetooth services on sensitive systems until updates are applied.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability allows for full system compromise, enabling attackers to gain unauthorized access to data, install persistence mechanisms, or move laterally within a local network. It impacts a wide range of Linux-based devices, including workstations, mobile platforms, and embedded IoT systems that rely on the BlueZ stack for Bluetooth communication.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate the BlueZ package to the latest version provided by your Linux distribution to address CVE-2024-27305.\u003c/li\u003e\n\u003cli\u003eAudit systems for active Bluetooth services and disable the \u003ccode\u003ebluetoothd\u003c/code\u003e service on servers or high-security endpoints where Bluetooth is not a required functional component.\u003c/li\u003e\n\u003cli\u003eUse host-based firewall rules to restrict Bluetooth-related traffic where possible, although this does not mitigate the proximity-based nature of the attack.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-25T09:59:05Z","date_published":"2026-08-25T09:59:05Z","id":"https://feed.craftedsignal.io/briefs/2026-08-bluez-rce/","summary":"A vulnerability in the BlueZ Bluetooth stack for Linux allows an unauthenticated attacker within Bluetooth range to execute arbitrary code with administrative privileges due to improper handling of Bluetooth requests.","title":"Arbitrary Code Execution in BlueZ Bluetooth Stack","url":"https://feed.craftedsignal.io/briefs/2026-08-bluez-rce/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:aio-Libs:aiosmtpd:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}