Логотип exploitDog
bind:"CVE-2023-45866"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-45866"

Количество 11

Количество 11

ubuntu логотип

CVE-2023-45866

почти 2 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
redhat логотип

CVE-2023-45866

почти 2 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
nvd логотип

CVE-2023-45866

почти 2 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
EPSS: Средний
msrc логотип

CVE-2023-45866

11 месяцев назад

CVSS3: 6.3
EPSS: Средний
debian логотип

CVE-2023-45866

почти 2 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral ...

CVSS3: 6.3
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2025:03590-1

3 дня назад

Security update for bluez

EPSS: Средний
github логотип

GHSA-qjcj-xg77-6c32

почти 2 года назад

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 8.8
EPSS: Средний
oracle-oval логотип

ELSA-2024-11154

10 месяцев назад

ELSA-2024-11154: bluez security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2023-08562

около 2 лет назад

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 8.8
EPSS: Средний
redos логотип

ROS-20240408-06

больше 1 года назад

Уязвимость bluez

CVSS3: 8.8
EPSS: Средний
oracle-oval логотип

ELSA-2024-9413

11 месяцев назад

ELSA-2024-9413: bluez security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
почти 2 года назад
redhat логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
почти 2 года назад
nvd логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 6.3
28%
Средний
почти 2 года назад
msrc логотип
CVSS3: 6.3
28%
Средний
11 месяцев назад
debian логотип
CVE-2023-45866

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral ...

CVSS3: 6.3
28%
Средний
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2025:03590-1

Security update for bluez

28%
Средний
3 дня назад
github логотип
GHSA-qjcj-xg77-6c32

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.

CVSS3: 8.8
28%
Средний
почти 2 года назад
oracle-oval логотип
ELSA-2024-11154

ELSA-2024-11154: bluez security update (MODERATE)

10 месяцев назад
fstec логотип
BDU:2023-08562

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 8.8
28%
Средний
около 2 лет назад
redos логотип
ROS-20240408-06

Уязвимость bluez

CVSS3: 8.8
28%
Средний
больше 1 года назад
oracle-oval логотип
ELSA-2024-9413

ELSA-2024-9413: bluez security update (MODERATE)

11 месяцев назад

Уязвимостей на страницу