CVE-2025-44526: Input Validation
Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was discovered to utilize insufficient permission checks on critical fields within Bluetooth Low Energy (BLE) data packets. This issue allows attackers to cause a Denial of Service (DoS) via a crafted LLLengthReq packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-44526?
CVE-2025-44526 has been classified as a high severity vulnerability due to its potential to cause Denial of Service.
How does CVE-2025-44526 impact Bluetooth communication?
CVE-2025-44526 enables attackers to disrupt Bluetooth Low Energy communication by exploiting insufficient permission checks.
What types of attacks can be performed using CVE-2025-44526?
CVE-2025-44526 allows attackers to execute Denial of Service attacks through the manipulation of LL_Length_Req packets.
How can I mitigate CVE-2025-44526 in my environment?
Mitigation for CVE-2025-44526 involves updating the Realtek RTL8762E SDK to the latest version to address the insufficient permission checks.
Which devices are affected by CVE-2025-44526?
CVE-2025-44526 specifically affects devices using the Realtek RTL8762E SDK version 1.4.0.