Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device information for Bluetooth transceivers in Non-Discoverable mode. By conducting an efficient over-the-air attack, an attacker can fully extract the permanent, unique Bluetooth MAC identifier, along with device capabilities and identifiers, some of which may contain identifying information about the device owner. This additionally allows the attacker to establish a connection to the target device.
History

Fri, 10 Jan 2025 19:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-203
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-01-10T18:29:57.338Z

Reserved: 2022-02-09T00:00:00

Link: CVE-2022-24695

cve-icon Vulnrichment

Updated: 2024-08-03T04:20:50.042Z

cve-icon NVD

Status : Modified

Published: 2023-06-02T12:15:09.243

Modified: 2025-01-10T19:15:28.910

Link: CVE-2022-24695

cve-icon Redhat

No data.