CyberRota Analysis
AI-GeneratedA vulnerability in the sbc library of the BlueZ SBC codec allows an adjacent attacker to exploit an off-by-one error in the frame decoder, potentially enabling them to read a single byte of adjacent heap memory through a crafted Bluetooth audio payload. This could lead to unauthorized information disclosure, posing a risk particularly for systems utilizing Bluetooth audio streaming. Organizations using Bluetooth audio devices or applications that rely on the BlueZ SBC codec should prioritize addressing this issue to mitigate potential data exposure.
Original NVD Description
A flaw was found in the sbc library (BlueZ SBC codec). An off-by-one error in the SBC frame decoder allows a crafted audio payload to trigger a one-byte heap out-of-bounds read. This could allow an adjacent attacker streaming Bluetooth audio to read a single byte of adjacent heap memory.