New Bluetooth vulnerability found on Android and iPhone

Bluetooth is one of the indispensable features for smartphones today. Although there are alternative technologies such as Nearby Share or AirDrop, it is very important for a common sharing method across all devices. However, security researchers revealed that the authentication error discovered in the Bluetooth protocol endangered Android and iPhones.

Bluetooth vulnerability found in Android, macOS and iOS

Software engineer Marc Newlin, who discovered the error; He stated that the Bluetooth-related problem was tracked with the code number CVE-2023-45866. According to this error, smartphones within Bluetooth range can send and receive files without any confirmation.

Attackers can access any device they want without user consent. In this way, it can connect to Android or iPhone via Bluetooth and send files via the host computer. Under normal circumstances, these actions must be performed with biometric authentication such as a password or fingerprint.

The best game of 2023 is coming to Xbox!The best game of 2023 is coming to Xbox!

The best game of 2023 is coming to Xbox!

Baldur’s Gate 3 has finally been released for Xbox Series X/S. This shows that it is coming to all platforms, including MacOS, before the end of the year.

The vulnerability has affected multiple versions of Bluetooth. This shows that different devices are at risk. The engineer who found the error; He stated that macOS, iOS, Android and Linux devices were affected.

Google stated that it was aware of this Bluetooth-related vulnerability and fixed it in Android’s December security update. While there is no statement from Apple for macOS and iOS, Linux announced that it will fix the bug next month.

https://shiftdelete.net/wp-content/uploads/2021/10/windows-10da-bluetooth-nasil-acilir-4-1.pnghttps://shiftdelete.net/wp-content/uploads/2021/10/windows-10da-bluetooth-nasil-acilir-4-1.png

It is currently unclear what can be done with the Bluetooth vulnerability. However, it is necessary to remind that it is possible to connect to the device and transfer the desired file via the protocol. This makes it possible to execute remote code on Android and iPhones.

source site-29