CVE-2026-55330: Use After Free
Published Oct 6, 2026
·Updated
In BluetoothCccHandlerCallbackImpl of bluetoothccc.cc, there is a possible use-after-free due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
1 affected component
Google Android
Event History
Oct 6, 2026
CVE Published
via MITRE·06:20 PM
Data Sourced
via MITRE·06:20 PM
DescriptionWeakness
Data Sourced
via NVD·07:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Does exploitation require user interaction or elevated privileges?
No. The issue is described as exploitable without user interaction and without requiring additional execution privileges.
2
Which software is identified as affected?
The affected software identified in the available information is Google Android from Google. Specific affected versions are not provided.