CVE-2025-20701
CVSS 8.8 HIGH: in the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. EPSS 9% (95º percentile).
Vulnerabilità · 102 giorni fa
Il punto non è solo la falla Bluetooth nei Beats Studio Buds. Il punto è che la correzione arriva da sola solo quando gli auricolari sono di nuovo paired e vicini a un device Apple; finché restano offline o fuori range, il rischio resta aperto più a lungo del normale per una patch annunciata dal vendor.
Apple ha rilasciato Beats Firmware Update 1B211 per CVE-2025-20701 sui Beats Studio Buds. L’advisory indica che un attacker in Bluetooth range può ascoltare tramite il microfono di un device non ancora paired e in attesa di richieste di pairing; la verifica dello stato del firmware passa dalle impostazioni Bluetooth di iPhone, iPad o Mac.
Per chi gestisce questi auricolari, la finestra di esposizione non coincide con la data dell’advisory ma con il momento in cui i buds tornano in range e ricevono davvero il firmware. Su dispositivi dormienti o non associati, la vulnerabilità può quindi persistere fino alla prossima connessione.
CVSS 8.8 HIGH: in the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. EPSS 9% (95º percentile).
3 fonti che coprono questa storia
Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
Apple fixed CVE-2025-20701 in Beats Studio Buds firmware 1B211, closing a Bluetooth pairing flaw that could allow nearby eavesdropping via Airoha SDK.
Apple patches eavesdropping vulnerability in Beats Studio Buds
The vulnerability, disclosed 12 months ago, affects multiple manufacturers.
Apple fixes Beats Studio Buds flaw that let hackers spy on conversations
Apple has released security updates to patch a high-severity flaw affecting the Beats Studio Buds wireless earbuds that could allow attackers in Bluetooth range to spy on users' conversations.
Part of the PlainSec briefing for 2026-06-19