As cited
Copy frozen at (site build).
vulnerabilities
How a USB-connected speaker can infect a PC without ever being touched
A researcher discovered that the Sound Blaster Katana V2X speaker, which connects to PCs via USB or Bluetooth, can be exploited for remote code execution through a proprietary protocol called Creative Transport Protocol (CTP). An attacker within Bluetooth range could potentially infect a connected computer without physical interaction with the device. The vulnerability affects the widely-used speaker sold by Creative Technologies.
Why it matters: This vulnerability allows local code execution on connected PCs through a consumer audio device without requiring physical access, making it relevant for users of this speaker model who should monitor for patches.
- Source published
- First seen by Cybersecurity Tracker