This CVE has been withdrawn by MITRE
MITRE marked CVE-2026-10772 as REJECTED on . There is no longer a valid blast radius to assess. Any historical package or vendor data shown below is preserved for audit reference only.
** DUPLICATE ** This CVE Record has been rejected by the Zephyr Project CNA. CVE-2026-10772 was assigned to a vulnerability already covered by CVE-2026-2411, which was assigned earlier for the same defect: the Bluetooth GATT notify/indicate paths check the permissions of the Characteristic Declaration attribute rather than the Characteristic Value attribute, so the encryption/authentication requirements configured on the value are not enforced. Both identifiers describe the same root cause in s…
CVE-2026-10772 Blast Radius
✕ WITHDRAWN — HISTORICAL DATARejected reason: ** DUPLICATE ** This CVE Record has been rejected by the Zephyr Project CNA. CVE... Rejected reason: ** DUPLICATE ** This CVE Record…