THREAT OPS › Threat News › [NVD] CVE-2026-2411 (MEDIUM 6.5) — Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GATT_PERM_READ, and a Characteristic Value attribute that carries the application-specified security permissions (e.g. BT_GATT_P
[NVD] CVE-2026-2411 (MEDIUM 6.5) — Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GATT_PERM_READ, and a Characteristic Value attribute that carries the application-specified security permissions (e.g. BT_GATT_P
CVE-2026-2411 CVSS: 6.5 MEDIUM Published: 2026-08-01T13:16:57.160
Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GATT_PERM_READ, and a Characteristic Value attribute that carries the application-specified security permissions (e.g. BT_GATT_PERM_READ_ENCRYPT / READ_AUTHEN / READ_LESC). The publ
Indicators of compromise
- CVE-2026-2411cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-2411