Bluekitchen Gmbh develops BTstack, an embedded Bluetooth protocol stack widely deployed across IoT devices, wearables, and consumer electronics where it handles wireless connectivity and device pairing. The vendor's disclosed vulnerabilities reflect the complexity inherent to a low-level wireless implementation operating at the boundary between host software and radio hardware. Current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bluekitchen Gmbh over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-28527HIGH BlueKitchen BTstack versions prior to 1.8.1 contain an out-of-bounds read vulnerability in the AVRCP Controller GET_PLAYER_APPLICATION_SETTING_ATTRIBUTE_TEXT and GET_PLAYER_APPLICA | Mar 30, 2026 | 7.3 | 25 | NO | NO |
CVE-2026-28526MEDIUM BlueKitchen BTstack versions prior to 1.8.1 contain an out-of-bounds read vulnerability in the AVRCP Controller LIST_PLAYER_APPLICATION_SETTING_ATTRIBUTES and LIST_PLAYER_APPLICATI | Mar 30, 2026 | 5.7 | 22 | NO | NO |
CVE-2026-28528MEDIUM BlueKitchen BTstack versions prior to 1.8.1 contain an out-of-bounds read vulnerability in the AVRCP Browsing Target GET_FOLDER_ITEMS handler that fails to validate packet boundari | Mar 30, 2026 | 4.6 | 20 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bluekitchen Gmbh.
Media articles that mention a CVE ID that affects a product developed by Bluekitchen Gmbh — matched by CVE ID, not by vendor name.