First published: Thu Jan 21 2021(Updated: )
A vulnerability was found in Linux Kernel, where Passkey Entry protocol used in Secure Simple Pairing (SSP), Secure Connections (SC) and LE Secure Connections (LESC) of the Bluetooth Core Specification is vulnerable to an impersonation attack where an active attacker can impersonate the initiating device without any previous knowledge. Refer: <a href="https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6d19628f539fccf899298ff02ee4c73e4bf6df3f">https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6d19628f539fccf899298ff02ee4c73e4bf6df3f</a>
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/bluez | <0:5.56-1.el8 | 0:5.56-1.el8 |
Bluetooth Bluetooth Core Specification | >=2.1<=5.2 | |
Fedoraproject Fedora | =34 | |
Debian Debian Linux | =9.0 | |
Linux Linux kernel | <5.13 | |
Intel Ax210 Firmware | ||
Intel Ax210 | ||
Intel Ax201 Firmware | ||
Intel Ax201 | ||
Intel Ax200 Firmware | ||
Intel Ax200 | ||
Intel Ac 9560 Firmware | ||
Intel Ac 9560 | ||
Intel Ac 9462 Firmware | ||
Intel Ac 9462 | ||
Intel Ac 9461 Firmware | ||
Intel Ac 9461 | ||
Intel Ac 9260 Firmware | ||
Intel Ac 9260 | ||
Intel Ac 8265 Firmware | ||
Intel Ac 8265 | ||
Intel Ac 8260 Firmware | ||
Intel Ac 8260 | ||
Intel Ac 3168 Firmware | ||
Intel Ac 3168 | ||
Intel Ac 7265 Firmware | ||
Intel Ac 7265 | ||
Intel Ac 3165 Firmware | ||
Intel Ac 3165 | ||
Intel Ax1675 Firmware | ||
Intel Ax1675 | ||
Intel Ax1650 Firmware | ||
Intel Ax1650 | ||
Intel Ac 1550 Firmware | ||
Intel Ac 1550 | ||
All of | ||
Intel Ax210 Firmware | ||
Intel Ax210 | ||
All of | ||
Intel Ax201 Firmware | ||
Intel Ax201 | ||
All of | ||
Intel Ax200 Firmware | ||
Intel Ax200 | ||
All of | ||
Intel Ac 9560 Firmware | ||
Intel Ac 9560 | ||
All of | ||
Intel Ac 9462 Firmware | ||
Intel Ac 9462 | ||
All of | ||
Intel Ac 9461 Firmware | ||
Intel Ac 9461 | ||
All of | ||
Intel Ac 9260 Firmware | ||
Intel Ac 9260 | ||
All of | ||
Intel Ac 8265 Firmware | ||
Intel Ac 8265 | ||
All of | ||
Intel Ac 8260 Firmware | ||
Intel Ac 8260 | ||
All of | ||
Intel Ac 3168 Firmware | ||
Intel Ac 3168 | ||
All of | ||
Intel Ac 7265 Firmware | ||
Intel Ac 7265 | ||
All of | ||
Intel Ac 3165 Firmware | ||
Intel Ac 3165 | ||
All of | ||
Intel Ax1675 Firmware | ||
Intel Ax1675 | ||
All of | ||
Intel Ax1650 Firmware | ||
Intel Ax1650 | ||
All of | ||
Intel Ac 1550 Firmware | ||
Intel Ac 1550 | ||
redhat/bluez | <5.57 | 5.57 |
Google Android | ||
debian/bluez | 5.55-3.1+deb11u1 5.55-3.1+deb11u2 5.66-1+deb12u2 5.66-1+deb12u1 5.77-1 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.106-3 6.1.112-1 6.11.4-1 6.11.5-1 |
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.