Out-of-bounds read in ESP-IDF - CVE-2026-81507
Published: September 7, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to an out-of-bounds read in BlueDroid L2CAP configuration-option processing in l2c_main.c and l2c_utils.c when processing a malformed L2CAP configuration request. A remote attacker can send a malformed L2CAP configuration request to disclose sensitive information.
Exploitation occurs during L2CAP channel configuration without authentication or encryption.