Логотип exploitDog
bind:CVE-2023-45866
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-45866

Количество 10

Количество 10

ubuntu логотип

CVE-2023-45866

больше 1 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
redhat логотип

CVE-2023-45866

больше 1 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
nvd логотип

CVE-2023-45866

больше 1 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
msrc логотип

CVE-2023-45866

8 месяцев назад

CVSS3: 6.3
EPSS: Средний
debian логотип

CVE-2023-45866

больше 1 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral ...

CVSS3: 6.3
EPSS: Средний
github логотип

GHSA-qjcj-xg77-6c32

больше 1 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 8.8
EPSS: Средний
oracle-oval логотип

ELSA-2024-11154

6 месяцев назад

ELSA-2024-11154: bluez security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2023-08562

почти 2 года назад

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 8.8
EPSS: Средний
redos логотип

ROS-20240408-06

около 1 года назад

Уязвимость bluez

CVSS3: 8.8
EPSS: Средний
oracle-oval логотип

ELSA-2024-9413

7 месяцев назад

ELSA-2024-9413: bluez security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
больше 1 года назад
redhat логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
больше 1 года назад
nvd логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
больше 1 года назад
msrc логотип
CVSS3: 6.3
28%
Средний
8 месяцев назад
debian логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral ...

CVSS3: 6.3
28%
Средний
больше 1 года назад
github логотип
GHSA-qjcj-xg77-6c32

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 8.8
28%
Средний
больше 1 года назад
oracle-oval логотип
ELSA-2024-11154

ELSA-2024-11154: bluez security update (MODERATE)

6 месяцев назад
fstec логотип
BDU:2023-08562

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 8.8
28%
Средний
почти 2 года назад
redos логотип
ROS-20240408-06

Уязвимость bluez

CVSS3: 8.8
28%
Средний
около 1 года назад
oracle-oval логотип
ELSA-2024-9413

ELSA-2024-9413: bluez security update (MODERATE)

7 месяцев назад

Уязвимостей на страницу