The Zephyr real-time operating system (RTOS) for embedded devices received an update earlier this month that fixes multiple vulnerabilities that can cause a denial-of-service (DoS) condition and potentially lead to remote code execution. The flaws are all in the Bluetooth LE Link Layer and the L2CAP implementation of the Logical Link Control and Adaptation Protocol (L2CAP) Most of the flaws affect versions 2.5.0 and 2.4.0; some are also present in version 1.14.0.
Source: https://www.bleepingcomputer.com/news/security/zephyr-rtos-fixes-bluetooth-bugs-that-may-lead-to-code-execution/

