What is CVE-2026-2411?
CVE-2026-2411 is a vulnerability in the Zephyr RTOS Bluetooth host where a GATT characteristic's declaration attribute is hard-coded with BT_GATT_PERM_READ, ignoring the application-level encryption permissions set on the value attribute. This could allow unauthorized read access to protected characteristic values. Users should apply the security patch provided by the Zephyr project.
Azərbaycanca: CVE-2026-2411 Zephyr RTOS-un Bluetooth hostunda GATT xarakteristikasının elanı zamanı oxuma icazələrinin səhv konfiqurasiyası ilə bağlı zəiflikdir. Bu, xarakteristikanın elan atributunun həmişə 'BT_GATT_PERM_READ' olaraq kodlaşdırılması səbəbindən, tətbiq səviyyəsində şifrələmə tələb edən dəyər atributuna icazəsiz girişə yol aça bilər. İstifadəçilər Zephyr layihəsinin təqdim etdiyi təhlükəsizlik yeniləməsini tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-284
FAQ2
In which component of Zephyr RTOS was CVE-2026-2411 discovered?
CVE-2026-2411 was discovered in the Bluetooth host of Zephyr RTOS.
What can an attacker achieve by exploiting CVE-2026-2411?
An attacker could gain unauthorized read access to the value attribute of a GATT characteristic that is protected by application-level encryption.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.