← Back

CVE-2017-17860

nvd nist
Published: Jan 18, 2018Modified: Nov 21, 2024

JSON object

Loading...
5.7
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 2.1 / Impact: 3.6
Source: NVD

Description

In Samsung Gear products, Bluetooth link key is updated to the different key which is same with attacker's link key. It can be attacked without user's intention only if attacker can reveal the Bluetooth address of target device and paired user's smartphone

Affected (1)

Products: Google: Android
1 product
Android
Configuration A
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Samsung
Gear S2
All versions
Samsung
Gear S3
All versions

References (2)

Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.