VDB

ALINUX2-SA-2020%3A0051

ALINUX2-SA-2020%3A0051 PUBLISHED CVSS 4.5 MEDIUM

Package updates are available for Alibaba Cloud Linux 2.1903 that fix the following vulnerabilities: CVE-2018-10910: A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

Risk Scores

CVSS 3.0
4.5
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L

Affected Products

VendorProductVersions
Alibaba Cloudbluez

Timeline

  • Apr 2, 2020 CVE Published
  • Apr 2, 2020 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›