Bluetooth "BlueBorne" Multiple Vulnerabilities
Last Update Date:
13 Sep 2017 10:34
Release Date:
13 Sep 2017
4604
Views
RISK: High Risk
TYPE: Attacks - Other
Multiple vulnerabilities have been identified in Bluetooth, known as BlueBorne, which could be exploited by attackers to conduct remote code execution on the unpatched mobile phones, computers, and Internet of Things (IoT) devices.
Impact
- Remote Code Execution
- Information Disclosure
System / Technologies affected
- Microsoft Windows
- Apple OS X
- Apple iOS
- Linux-kernel-based operating systems including Android and Tizen
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a fix:
- Microsoft - https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8628
- Apple - Update to latest releases
- Android - https://source.android.com/security/bulletin/2017-09-01
- Phones and other mobile devices running Android are likely to see delayed updates, or possibly never receive updates. If an update is not available, affected users should consider the following workaround:
- Disable Bluetooth on your device
Affected users should consider disabling Bluetooth on affected devices if Bluetooth is unused or unnecessary.
- Disable Bluetooth on your device
Vulnerability Identifier
- CVE-2017-1000251
- CVE-2017-1000250
- CVE-2017-0785
- CVE-2017-0781
- CVE-2017-0782
- CVE-2017-14315
- CVE-2017-0783
- CVE-2017-8628
Source
Related Link
Share with