CVE-2025-5478
Last modified
CVE-2025-5478 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sony XAV-AX8500 devices. EPSS estimates a 0.38% chance of exploitation in the next 30 days.
Description
Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sony XAV-AX8500 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the Bluetooth SDP protocol. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-26288.
Metrics
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sony | Xav-Ax8500 Firmware | >= 2.00.01, < 3.02.00 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-5478?
How severe is CVE-2025-5478?
How do I fix CVE-2025-5478?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-54769An authenticated, read-only user can upload a file and perfo…8.8
- CVE-2025-5477Sony XAV-AX8500 Bluetooth L2CAP Protocol Heap-based Buffer O…7.5
- CVE-2025-54770A vulnerability has been identified in the GRUB2 bootloader'…4.9
- CVE-2025-54771A use-after-free vulnerability has been identified in the GN…4.9
- CVE-2025-54777Uncaught exception issue exists in Multiple products in bizh…5.3
- CVE-2025-54778A reflected cross-site scripting (xss) vulnerability exists …5.4
- CVE-2025-54780The glpi-screenshot-plugin allows users to take screenshots …7.7
- CVE-2025-54781Himmelblau is an interoperability suite for Microsoft Azure …2.8
- CVE-2025-54782Nest is a framework for building scalable Node.js server-sid…8.8
- CVE-2025-54783SuiteCRM is an open-source, enterprise-ready Customer Relati…6.1
- CVE-2025-54784SuiteCRM is an open-source, enterprise-ready Customer Relati…6.1
- CVE-2025-54785SuiteCRM is an open-source, enterprise-ready Customer Relati…8.8
Are you affected by CVE-2025-5478?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
