Lucene search

K
cve[email protected]CVE-2024-27867
HistoryJun 26, 2024 - 4:15 a.m.

CVE-2024-27867

2024-06-2604:15:11
web.nvd.nist.gov
16
20
authentication
airpods
beats
firmware update
bluetooth
security

6.3 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

An authentication issue was addressed with improved state management. This issue is fixed in AirPods Firmware Update 6A326, AirPods Firmware Update 6F8, and Beats Firmware Update 6F8. When your headphones are seeking a connection request to one of your previously paired devices, an attacker in Bluetooth range might be able to spoof the intended source device and gain access to your headphones.

Affected configurations

Vulners
Node
airpods_firmware_update_a\,_airpods_firmware_update_f\,Range<6
OR
beats_firmware_update_fRange<6

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "AirPods Firmware Update A, AirPods Firmware Update F, and Beats Firmware Update F",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "6",
        "versionType": "custom"
      }
    ]
  }
]

Social References

More

6.3 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

Related for CVE-2024-27867