Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-24695
HistoryJun 02, 2023 - 12:00 a.m.

CVE-2022-24695

2023-06-0200:00:00
ubuntu.com
ubuntu.com
25
bluetooth classic
bluetooth core specification
vulnerability
bluetooth mac identifier
non-discoverable
device information
over-the-air attack
connection establishment

CVSS3

4.3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

4.5

Confidence

High

EPSS

0.001

Percentile

19.7%

Bluetooth Classic in Bluetooth Core Specification through 5.3 does not
properly conceal device information for Bluetooth transceivers in
Non-Discoverable mode. By conducting an efficient over-the-air attack, an
attacker can fully extract the permanent, unique Bluetooth MAC identifier,
along with device capabilities and identifiers, some of which may contain
identifying information about the device owner. This additionally allows
the attacker to establish a connection to the target device.

Notes

Author Note
alexmurray Since this vulnerability affects the Bluetooth Core Specification it may then also affect bluez on Ubuntu. At this stage there is little detail publicly available about this vulnerability though and no patch available either.
mdeslaur as of 2024-06-03, no software mitigation is available for this issue, marking as ignored

CVSS3

4.3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

4.5

Confidence

High

EPSS

0.001

Percentile

19.7%

Related for UB:CVE-2022-24695