#VU97651 Improper access control in BlueZ - CVE-2024-8805
Published: September 23, 2024 / Updated: December 11, 2024
BlueZ
BlueZ Project
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions within the implementation of the HID over GATT Profile. A remote attacker on the local network can bypass implemented security restrictions and execute arbitrary code on the target system.