In the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. This could lead to remote escalation of privilege with no additional execution privilege
Consumer BT peripheral flaw with proximity-only attack — not patchable by your infra team.