PT-2016-1015 · Google · Android
Tom Craig
·
Published
2016-01-06
·
Updated
2016-12-07
·
CVE-2015-6641
CVSS v2.0
2.9
Low
| Vector | AV:A/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Android versions prior to 2016-01-01
Description
The issue is related to a lack of protection for service data in the Bluetooth component of the Android operating system. This allows an attacker to obtain sensitive Contacts information by establishing a connection.
Recommendations
For Android versions prior to 2016-01-01, consider disabling Bluetooth functionality until a patch is available to prevent potential exploitation. Restrict access to sensitive contact information to minimize the risk of unauthorized access.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android