CVE-2018-10910
Summary
| CVE | CVE-2018-10910 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-01-28 15:29:00 UTC |
| Updated | 2023-02-13 04:51:00 UTC |
| Description | A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Red Hat Customer Portal |
MISC |
access.redhat.com |
|
| USN-3856-1: GNOME Bluetooth vulnerability | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| Red Hat Customer Portal |
MISC |
access.redhat.com |
|
| 1606203 – (CVE-2018-10910) CVE-2018-10910 bluez: failure in disabling Bluetooth discoverability in certain cases may lead to the unauthorized pairing of Bluetooth devices |
CONFIRM |
bugzilla.redhat.com |
Exploit, Issue Tracking, Patch, Third Party Advisory |
| 1606203 – (CVE-2018-10910) CVE-2018-10910 bluez: failure in disabling Bluetooth discoverability in certain cases may lead to the unauthorized pairing of Bluetooth devices |
MISC |
bugzilla.redhat.com |
|
| CVE-2018-10910 - Red Hat Customer Portal |
MISC |
access.redhat.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 377552 Alibaba Cloud Linux Security Update for bluez (ALINUX2-SA-2020:0051)