USN-6741-1: Linux kernel vulnerabilities
Daniele Antonioli discovered that the Secure Simple Pairing and Secure Connections pairing in the Bluetooth protocol could allow an unauthenticated user to complete authentication without pairing credentials. A physically proximate attacker placed between two Bluetooth devices could use this to subsequently impersonate one of the paired devices. (CVE-2023-24023) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-6741-1?
The severity of USN-6741-1 is categorized as important, indicating a significant risk for security vulnerabilities in the Bluetooth protocol.
How do I fix USN-6741-1?
To fix USN-6741-1, you should upgrade to the latest recommended version of the relevant Linux kernel packages provided by Ubuntu.
What products are affected by USN-6741-1?
USN-6741-1 affects several Ubuntu 20.04 kernel packages, including linux-image-generic and linux-image-virtual.
What kind of vulnerability is described in USN-6741-1?
USN-6741-1 describes a vulnerability that allows unauthenticated users to bypass Bluetooth pairing requirements.
How can I check if my system is vulnerable to USN-6741-1?
You can check if your system is vulnerable to USN-6741-1 by verifying the version of your installed Linux kernel against the fixed versions listed in the advisory.