CVE-2025-20701
CVSS 8.8 HIGH: in the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. EPSS 9% (95º percentile).
Vulnerabilità ed exploit · Attacco IoT / OT
Il punto non è solo la falla Bluetooth nei Beats Studio Buds. Il punto è che la correzione arriva da sola solo quando gli auricolari sono di nuovo paired e vicini a un device Apple; finché restano offline o fuori range, il rischio resta aperto più a lungo del normale per una patch annunciata dal vendor.
Apple ha rilasciato Beats Firmware Update 1B211 per CVE-2025-20701 sui Beats Studio Buds. L’advisory indica che un attacker in Bluetooth range può ascoltare tramite il microfono di un device non ancora paired e in attesa di richieste di pairing; la verifica dello stato del firmware passa dalle impostazioni Bluetooth di iPhone, iPad o Mac.
Per chi gestisce questi auricolari, la finestra di esposizione non coincide con la data dell’advisory ma con il momento in cui i buds tornano in range e ricevono davvero il firmware. Su dispositivi dormienti o non associati, la vulnerabilità può quindi persistere fino alla prossima connessione.
3 fonti · 19 giu
CVSS 8.8 HIGH: in the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. EPSS 9% (95º percentile).
The Hacker News
Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
Apple fixed CVE-2025-20701 in Beats Studio Buds firmware 1B211, closing a Bluetooth pairing flaw that could allow nearby eavesdropping via Airoha SDK.
originaleArs Technica Security
Apple patches eavesdropping vulnerability in Beats Studio Buds
The vulnerability, disclosed 12 months ago, affects multiple manufacturers.
originaleBleepingComputer
Apple fixes Beats Studio Buds flaw that let hackers spy on conversations
Apple has released security updates to patch a high-severity flaw affecting the Beats Studio Buds wireless earbuds that could allow attackers in Bluetooth range to spy on users' conversations.
originalePart of the PlainSec briefing for 2026-06-19
Every edition of this story: Beats Studio Buds restano esposti fino al rientro in range