CVE Tools

Уязвимость в наушниках Apple Beats Studio позволяла подслушивать разговоры

Хакер (xakep.ru)By Мария Нефёдова

PatchBeats Studio BudsBeats firmware 1B211

Our summary

Apple released a patch for Beats Studio Buds to address a Bluetooth-related weakness that could allow an attacker within radio range to access the device microphone and listen to nearby conversations. The issue affects unpaired earbuds in a connection-request waiting state and is fixed in Beats Firmware Update 1B211. The vulnerability is tracked as CVE-2025-20701 and is associated with missing authentication in Bluetooth BR/EDR on an Airoha SoC; depending on how it’s combined with CVE-2025-20700 and CVE-2025-20702, attackers may also be able to intercept phone connections via Hands-Free Profile (HFP) and further expand access.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store