Skip to finding
interesting · Bluetooth — mobile

Three Android Bluetooth flaws let locally running code cross into the privileged Bluetooth service.

Affects

Android's privileged Bluetooth service on Android 16, Android 16 QPR2, and Android 17 devices.

Google classifies an uninitialized-pointer path, an AVRCP race, and a snoop-filter validation flaw as local elevation of privilege.

Detail and 4 sources
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Tuesday, October 6, 2026