DEBIAN-CVE-2018-10910

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 28 Jan 2019, 15:29
Last modified:28 Apr 2026, 20:18

Vulnerability Summary

Overall Risk (default)
low
13/100
CVSS Score
3.3 LOW
3.0 (osv_debian)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

28 Jan 2019, 15:29
Published
Vulnerability first disclosed
28 Apr 2026, 20:18
Last Modified
Vulnerability information updated

Description

A bug in Bluez may allow for the Bluetooth Discoverable state being set to on when no Bluetooth agent is registered with the system. This situation could lead to the unauthorized pairing of certain Bluetooth devices without any form of authentication. Versions before bluez 5.51 are vulnerable.

CVSS Metrics

  • v3.0LOWScore: 3.3CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Affected Systems

  • debianbluez

    < 5.54-1 | < 5.54-1 | < 5.54-1 | < 5.54-1

References (1)