NONE · 0

CVE-2026-44634

SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE). Prior to version 0.14.0, there are multiple stack-based buffer overflow vulnerabilities in SimpleBLE. There is a stac...

Vulnerability Description

SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE). Prior to version 0.14.0, there are multiple stack-based buffer overflow vulnerabilities in SimpleBLE. There is a stack overflow vulnerability in the dongl backend’s Protocol::simpleble_write function (local, caller-controlled input). A stack overflow vulnerability when processing manufacturer-specific data in BLE advertisements (remote, no pairing or connection required). Lastly, a stack overflow vulnerability when processing service data in BLE advertisements (remote, no pairing or connection required). This issue has been patched in version 0.14.0.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-44634?

CVE-2026-44634 is a documented vulnerability. SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE). Prior to version 0.14.0, there are multiple stack-based buffer overflow vulnerabilities in SimpleBLE. There is a stac...

How severe is CVE-2026-44634?

CVSS scoring is not yet available for CVE-2026-44634. Check NVD for updates.

Is there a patch for CVE-2026-44634?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.