Описание
In the Airoha Bluetooth audio SDK, there is a possible unauthorized access to the RACE protocol. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
EPSS
Процентиль: 92%
0.05413
Низкий
8.8 High
CVSS3
Дефекты
CWE-306
Связанные уязвимости
CVSS3: 8.8
github
12 месяцев назад
In the Airoha Bluetooth audio SDK, there is a possible unauthorized access to the RACE protocol. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS3: 5.5
fstec
около 1 года назад
Уязвимость компонента Custom Protocol Bluetooth-чипов TWS-наушников Airoha Technology, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS
Процентиль: 92%
0.05413
Низкий
8.8 High
CVSS3
Дефекты
CWE-306