QSearchQSearch

CVE-2026-44634

SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE)

Published: 2026-06-10 · Last updated: 2026-06-10

Severity and scoring

CWE
CWE-121, CWE-787

Description

SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE). Prior to version 0.14.0, there are multiple stack-based buffer overflow vulnerabilities in SimpleBLE. There is a stack overflow vulnerability in the dongl backend’s Protocol::simpleble_write function (local, caller-controlled input). A stack overflow vulnerability when processing manufacturer-specific data in BLE advertisements (remote, no pairing or connection required). Lastly, a stack overflow vulnerability when processing service data in BLE advertisements (remote, no pairing or connection required). This issue has been patched in version 0.14.0.

Source: NVD

References

Related CVEs

Same CWE

  • CVE-2026-26241 A buffer overflow vulnerability has been reported to affect File Station 5
  • CVE-2026-26240 A buffer overflow vulnerability has been reported to affect File Station 5
  • CVE-2026-26239 A buffer overflow vulnerability has been reported to affect File Station 5
  • CVE-2025-66280 An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions
  • CVE-2026-45328 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework (9.3 CRITICAL)
CVE-2026-44634 — SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE) · QSearch CVE Watch | QSearch