logo

Redmi Buds Vulnerability Allow Attackers Access Call Data and Trigger Firmware Crashes

ID: d24cb6d4-77b4-50f4-8a6a-983058b43002

STIX ID: report--d24cb6d4-77b4-50f4-8a6a-983058b43002

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-01-19

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Security researchers disclosed critical Bluetooth RFCOMM vulnerabilities in Xiaomi Redmi Buds (models from Redmi Buds 3 Pro to Redmi Buds 6 Pro): CVE-2025-13834 permits out-of-bounds reads of up to 127 bytes (potentially exposing phone numbers and other sensitive memory), and CVE-2025-13328 enables Denial of Service via packet flooding; both are exploitable without pairing using only the device MAC from ~20 meters and no firmware patch from Xiaomi has been announced.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.