Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-5383

Опубликовано: 07 авг. 2018
Источник: debian
EPSS Низкий

Описание

Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firmware-nonfreefixed20190114-1package
firmware-nonfreefixed20161130-5stretchpackage

Примечания

  • http://www.cs.technion.ac.il/~biham/BT/

EPSS

Процентиль: 69%
0.0061
Низкий

Связанные уязвимости

CVSS3: 8
ubuntu
больше 7 лет назад

Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.

CVSS3: 7.1
redhat
больше 7 лет назад

Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.

CVSS3: 8
nvd
больше 7 лет назад

Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.

suse-cvrf
почти 7 лет назад

Security update for kernel-firmware

suse-cvrf
почти 7 лет назад

Security update for kernel-firmware

EPSS

Процентиль: 69%
0.0061
Низкий