Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-10910

Опубликовано: 28 янв. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 2.1
CVSS3: 4.5

Описание

A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

РелизСтатусПримечание
bionic

ignored

cosmic

ignored

end of life
devel

not-affected

5.52-0ubuntu2
disco

ignored

end of life
eoan

ignored

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/bionic

ignored

esm-infra/xenial

ignored

precise/esm

DNE

trusty

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

released

3.28.0-2ubuntu0.1
cosmic

not-affected

3.28.2-2
devel

not-affected

3.28.2-3
disco

not-affected

3.28.2-3
eoan

not-affected

3.28.2-3
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [3.8.2.1-0ubuntu4.2]]
esm-infra/bionic

released

3.28.0-2ubuntu0.1
esm-infra/xenial

not-affected

3.18.2-1ubuntu2
precise/esm

DNE

trusty

not-affected

3.8.2.1-0ubuntu4.2

Показывать по

EPSS

Процентиль: 18%
0.00057
Низкий

2.1 Low

CVSS2

4.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.5
redhat
больше 7 лет назад

A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

CVSS3: 4.5
nvd
около 7 лет назад

A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

CVSS3: 4.5
debian
около 7 лет назад

A bug in Bluez may allow for the Bluetooth Discoverable state being se ...

CVSS3: 3.3
github
больше 3 лет назад

A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

oracle-oval
почти 6 лет назад

ELSA-2020-1912: bluez security update (LOW)

EPSS

Процентиль: 18%
0.00057
Низкий

2.1 Low

CVSS2

4.5 Medium

CVSS3