What is CVE-2026-45812?
CVE-2026-45812 is a buffer size miscalculation vulnerability in Apache NimBLE when processing Legacy Advertising Report HCI events. When multiple reports are bundled in a single event, the offset to the next report is incorrectly calculated, potentially causing the host to read past the end of the buffer. Affected Apache NimBLE users should urgently apply the security update.
Azərbaycanca: CVE-2026-45812, Apache NimBLE-in "Legacy Advertising Report" HCI hadisələrini emal edərkən bufer ölçüsünün səhv hesablanması zəifliyidir. Birdən çox reklam hesabatı bir HCI hadisəsində cəmləndikdə, növbəti hesabata keçid ofseti yanlış hesablanır ki, bu da host-un bufer sonundan sonra oxumasına səbəb ola bilər. Təsirə məruz qalan Apache NimBLE istifadəçiləri təcili olaraq təhlükəsizlik yeniləməsini tətbiq etməlidirlər.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Apache
FAQ2
During which operation does the CVE-2026-45812 vulnerability occur in Apache NimBLE?
This vulnerability occurs when Apache NimBLE processes Legacy Advertising Report HCI events.
What can the buffer size miscalculation in CVE-2026-45812 potentially cause?
It can potentially cause the host to read past the end of the buffer.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.