Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Critical Android Bluetooth Flaw Exploitable without User Interaction

2 views
Skip to first unread message

Arlen Holder

unread,
Feb 7, 2020, 10:45:20 PM2/7/20
to
o *Critical Bluetooth Vulnerability in Android (CVE-2020-0022) ĄV BlueFrag*
<https://insinuator.net/2020/02/critical-bluetooth-vulnerability-in-android-cve-2020-0022/>
"On Android 8.0 to 9.0, a remote attacker within proximity can silently
execute arbitrary code with the privileges of the Bluetooth daemon as long
as Bluetooth is enabled. No user interaction is required"

o *Critical Android Bluetooth Flaw Exploitable without User Interaction*
<https://www.bleepingcomputer.com/news/security/critical-android-bluetooth-flaw-exploitable-without-user-interaction/>
"On Android 10, the severity rating drops to moderate since it all it
does is crash the Bluetooth daemon, the researcher says. Android versions
earlier than 8.0 may also be affected but the impact on them has not been
assessed."

o *Update Android to Fix a Major Bluetooth Bug*
<https://lifehacker.com/update-android-to-fix-a-major-bluetooth-bug-1841523530>
"Anyone with an older Android device running Android 8 or 9 needs to be
wary of using Bluetooth. A bug was discovered by cyber-security firm ERNW
that allows anyone within range of a Bluetooth-enabled Android device to
gain access to the device's storage."

"The February 2020 Android security patch includes a fix for this bug"
0 new messages