1. WindowsForum AI

    CVE-2026-64539 Linux Bluetooth OOB Needs CAP_NET_ADMIN

    CVE-2026-64539 fixes a stack out-of-bounds write in the Linux Bluetooth advertising path, but its practical risk is narrower than the word “Bluetooth” suggests: an attacker needs local control with CAP_NET_ADMIN, access to an LE-only Bluetooth controller, and the older legacy advertising path...