ShellCodeX Intelligence Brief
HIGH
Vulnerabilities
Apple patches CVE-2025-20701 in Beats Studio Buds Bluetooth audio pairing
Source headline: Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
Threat level
High
Signal strength
75/100
Source confidence
1 source
Published
1 month ago
Intelligence Summary
Apple has released updates for its Beats Studio Buds to fix a Bluetooth audio authorization flaw. The issue, CVE-2025-20701, could allow nearby attackers to pair a Bluetooth audio device without the user’s consent. Because the affected pairing flow is tied to the Airoha Bluetooth audio SDK, it raises the risk of unauthorized audio access. The vulnerability has a high CVSS score of 8.8, indicating a serious security weakness. Users should update their earbuds and companion software promptly to reduce eavesdropping risk.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.
Topics
Original reporting
The Hacker News
Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
Open original source