PT-2017-15515 · Huawei · Honor 6

Publicado

2017-11-22

·

Atualizado

2019-10-03

·

CVE-2017-2728

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Honor 6X version Berlin-L22C636B150 and earlier versions
Description The issue is related to a Bluetooth unlock bypassing vulnerability due to the lack of validation on Bluetooth devices. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.
Recommendations For Honor 6X version Berlin-L22C636B150 and earlier versions, consider disabling the smart unlock function until a patch is available to prevent exploitation of this issue. Restrict access to the Bluetooth functionality to minimize the risk of unauthorized screen unlocks.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2017-2728

Produtos afetados

Honor 6