In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LE
This aligned BR/EDR JUST_WORKS method with LE which since 92516cd97fd4
("Bluetooth: Always request for user confirmation for Just Works")
always request user confirmation with confirm_hint set since the
likes of bluetoothd have dedicated policy around JUST_WORKS method
(e.g. main.conf:JustWorksRepairing).
CVE: CVE-2024-8805
Metrics
Affected Vendors & Products
References
History
Thu, 10 Apr 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 04 Mar 2025 06:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-20 |
Sat, 04 Jan 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Wed, 18 Dec 2024 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 17 Dec 2024 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LE This aligned BR/EDR JUST_WORKS method with LE which since 92516cd97fd4 ("Bluetooth: Always request for user confirmation for Just Works") always request user confirmation with confirm_hint set since the likes of bluetoothd have dedicated policy around JUST_WORKS method (e.g. main.conf:JustWorksRepairing). CVE: CVE-2024-8805 | |
Title | Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LE | |
References |
|
|

Status: PUBLISHED
Assigner: Linux
Published: 2024-12-17T15:55:03.394Z
Updated: 2025-05-04T13:00:37.051Z
Reserved: 2024-11-19T17:17:24.997Z
Link: CVE-2024-53144

No data.

Status : Awaiting Analysis
Published: 2024-12-17T16:15:25.797
Modified: 2025-04-10T13:15:45.907
Link: CVE-2024-53144
