https://seclists.org/oss-sec/2026/q3/239: CVE-2026-45811: Apache NimBLE: Buffer overflow in socket HCI transport
Published Jul 24, 2026
·Updated
Affected Software
1 affected component
Apache NimBLE<=1.9.0
Frequently Asked Questions
1
What is the severity of CVE-2026-45811?
The severity of CVE-2026-45811 is classified as low.
2
Which versions of Apache NimBLE are affected by CVE-2026-45811?
Apache NimBLE versions up to and including 1.9.0 are affected by CVE-2026-45811.
3
What type of vulnerability is identified in CVE-2026-45811?
CVE-2026-45811 is identified as a buffer copy without checking size of input, resulting in a classic buffer overflow.
4
How can I mitigate the risk of CVE-2026-45811?
To mitigate the risk of CVE-2026-45811, update Apache NimBLE to a version higher than 1.9.0.
5
What is the impact of the buffer overflow in CVE-2026-45811?
The buffer overflow in CVE-2026-45811 may lead to unexpected behavior or crashes in the application.