{"apiVersion":"1.0","identifier":"CVE-2026-80185","description":"BlueZ sdp-xml.c type confusion via RegisterProfile(ServiceRecord) can crash bluetoothd (local DoS): a crafted nested ServiceRecord can corrupt the SDP XML parser stack so scalar union data is treated as a sequence pointer, allowing a local caller to crash bluetoothd.","publishedAt":"2026-08-25T22:17:07","lastModifiedAt":"2026-08-26T15:17:03","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-80185","cvssScore":5.7,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","epssProbability":0.00237,"riskScore":0.58,"affectedProduct":"BlueZ","affectedVersions":"unknown","vulnerabilityType":"Library","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-80185","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-80185","en":"https://www.redsauce.net/en/cves/CVE-2026-80185","fr":"https://www.redsauce.net/fr/cves/CVE-2026-80185","pt":"https://www.redsauce.net/pt/cves/CVE-2026-80185","de":"https://www.redsauce.net/de/cves/CVE-2026-80185","sk":"https://www.redsauce.net/sk/cves/CVE-2026-80185","el":"https://www.redsauce.net/el/cves/CVE-2026-80185"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-80185"}}