interesting · Bluetooth — mobile
Three Android Bluetooth flaws let locally running code cross into the privileged Bluetooth service.
Affects
Android's privileged Bluetooth service on Android 16, Android 16 QPR2, and Android 17 devices.
Google classifies an uninitialized-pointer path, an AVRCP race, and a snoop-filter validation flaw as local elevation of privilege.
Detail and 4 sources
These are secondary because code must already be running locally, and the app-visible entry points, required Bluetooth state, and resulting SELinux boundary remain unpublished.
Sources
Researchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/49xxx/CVE-2026-49933.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58880.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/55xxx/CVE-2026-55269.jsonVendorAndroid Security Bulletin—October 2026 | Android Open Source Project