PT-2019-10060 · Opensynergy · Opensynergy Blue Sdk
Publicado
2019-03-29
·
Atualizado
2019-04-01
·
CVE-2018-20378
CVSS v3.1
7.5
Alta
| Vetor | AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
OpenSynergy Blue SDK versions 3.2 through 6.0
Description:
The issue allows remote, unauthenticated attackers to execute arbitrary code or cause a denial of service via malicious L2CAP configuration requests, in conjunction with crafted SDP communication over maliciously configured L2CAP channels. The attacker must have connectivity over the Bluetooth physical layer and be able to send raw L2CAP frames. This is related to
L2Cap HandleConfigReq in core/stack/l2cap/l2cap sm.c and SdpServHandleServiceSearchAttribReq in core/stack/sdp/sdpserv.c.Recommendations:
For OpenSynergy Blue SDK versions 3.2 through 6.0, consider disabling the
L2Cap HandleConfigReq function and restricting access to the SdpServHandleServiceSearchAttribReq function until a patch is available. Additionally, restrict the ability to send raw L2CAP frames and limit connectivity over the Bluetooth physical layer to trusted devices.Exploit
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Opensynergy Blue Sdk