Multiple vulnerabilities have been reported in Airoha Bluetooth firmware, which could allow an attacker to gain unauthorised access to Bluetooth audio devices, potentially eavesdrop on or manipulate audio communications, and intercept or inject commands on the targeted system.
Target Audience:
All organisations and individuals using Bluetooth devices using Airoha Systems-on-Chip (SoCs)
Impact Assessment:
Potential for eavesdropping, call hijacking, device manipulation, and full takeover through unauthorized firmware modification.
Risk Assessment:
High risk of device compromise
The information provided herein is on "as is" basis, without warranty of any kind.