VDB
BDU%3A2023-08267
BDU%3A2023-08267
PUBLISHED
CVSS 6.199999809265137 MEDIUM
Уязвимость реализации подключений Secure Connections Pairing и Secure Simple Pairing спецификации Bluetooth Core Specification, позволяющая нарушителю реализовать атаку типа «человек посередине»
Risk Scores
CVSS 2.0
6.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Сообщество свободного программного обеспечения, АО «НТЦ ИТ РОСА» | Astra Linux Special Edition (запись в едином реестре российских программ №369), Bluetooth Core Specification, ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Dec 1, 2023 CVE Published
- Jan 21, 2026 CVE Updated
References
- https://www.anti-malware.ru/news/2023-11-29-111332/42373 url
- https://dl.acm.org/doi/10.1145/3576915.3623066 url
- https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/bluffs-vulnerability/ url
- https://vuldb.com/?id.246247 url
- https://abf.rosa.ru/advisories/ROSA-SA-2025-2861 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-1202SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE57 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE47 advisory