ThreatCluster

Bluetooth Vulnerabilities CVE-2024-36013 and CVE-2025-21969 Addressed

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 46

Article Content

Browse articles
ThreatCluster

Two Bluetooth vulnerabilities have been reported, CVE-2024-36013 and CVE-2025-21969, both related to the L2CAP protocol. CVE-2024-36013 involves a slab-use-after-free issue in the l2cap_connect() function, while CVE-2025-21969 addresses a similar issue in l2cap_send_cmd. These vulnerabilities could potentially affect systems utilizing Bluetooth technology.

Timeline

2024-05-23
CVE-2024-36013 published
2025-04-01
CVE-2025-21969 published
2026-02-18
Information published about both vulnerabilities