ASB-A-174626251 PUBLISHED

In btm_sec_pin_code_request of btm_sec.cc, there is a possible bypass of Bluetooth pairing pin-code due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

Affected Products

VendorProductVersions
platformsystem/bt8.1, 8.1:0, 9:0

Timeline

References

Open in Interactive Console →