CVE-2012-6459: Infoleak
Published Jan 1, 2013
·Updated
ConnMan 1.3 on Tizen continues to list the bluetooth service after offline mode has been enabled, which might allow remote attackers to obtain sensitive information via Bluetooth packets.
Affected Software
2 affected components
Intel Connman=1.3
Linux Tizen
Event History
Jan 1, 2013
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6459?
CVE-2012-6459 is considered a moderate severity vulnerability due to potential information leakage.
2
How does CVE-2012-6459 affect ConnMan 1.3 on Tizen?
CVE-2012-6459 allows remote attackers to access sensitive information via Bluetooth packets after offline mode is enabled.
3
Are there specific conditions required to exploit CVE-2012-6459?
An attacker must be in proximity to the device to exploit CVE-2012-6459 and send Bluetooth packets.
4
How can I mitigate the risks associated with CVE-2012-6459?
To mitigate CVE-2012-6459, users should disable Bluetooth when not in use and ensure their device runs updated software.
5
Is there a patch available for CVE-2012-6459?
There is no specific patch listed for CVE-2012-6459, so users should follow best practices for Bluetooth security.