PT-2025-36235 · Unknown · Audio Service

Published

2025-09-05

·

Updated

2025-09-05

·

CVE-2024-0028

CVSS v3.1
5.5
VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Name of the Vulnerable Software and Affected Versions:

Audio Service (affected versions not specified)

Description:

The Audio Service contains a flaw where a missing permission check could allow obtaining MAC addresses of nearby Bluetooth devices. This may lead to local escalation of privilege without requiring additional execution privileges or user interaction.

Recommendations:

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-0028

Affected Products

Audio Service