CVE-2017-14315
published 2017-09-12CVE-2017-14315: In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a targeted…
PriorityP340high7.5CVSS 3.0
AVAACHPRNUINSUCHIHAH
EPSS
1.00%
58.9th percentile
In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a targeted device and lead to a heap overflow with attacker-controlled data. Since the audio commands sent via LEAP are not properly validated, an attacker can use this overflow to gain full control of the device through the relatively high privileges of the Bluetooth stack in iOS. The attack bypasses Bluetooth access control; however, the default "Bluetooth On" value must be present in Settings.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | apple_tv_software | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.9HIGHAV:A/AC:M/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fh2g-g7qm-3vm4: In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a ta
ghsa_unreviewed·2022-05-14
CVE-2017-14315 [HIGH] CWE-119 GHSA-fh2g-g7qm-3vm4: In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a ta
In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a targeted device and lead to a heap overflow with attacker-controlled data. Since the audio commands sent via LEAP are not properly validated, an attacker can use this overflow to gain full control of the device through the relatively high privileges of the Bluetooth stack in iOS. The attack bypasses Bluetooth access control; however, the default "Bluetooth On" value must be present in Settings.
Apple
CVE-2017-14315: Apple TV Software 7.3
vendor_apple·2019-05-13·CVSS 7.5
CVE-2017-14315 [HIGH] CVE-2017-14315: Apple TV Software 7.3
Apple Security Update: About the security content of Apple TV Software 7.3
Product: Apple TV Software
Version: 7.3
CVE: CVE-2017-14315
Component: Bluetooth
Impact: A remote attacker may cause an unexpected application termination or arbitrary code execution
Description: An input validation issue existed in Bluetooth. This issue was addressed with improved input validation.
No detection rules found.
No public exploits indexed.
Fortinet
BlueBorne May Affect Billions of Bluetooth Devices
blogs_fortinet·2017-09-14·CVSS 8.8
[HIGH] BlueBorne May Affect Billions of Bluetooth Devices
FORTIGUARD LABS THREAT RESEARCH
BlueBorne May Affect Billions of Bluetooth Devices
By Aamir Lakhani | September 14, 2017
Bluetooth is one of the most widely deployed and used connectivity protocols in the world. Everything from electronic devices to smartphones uses it, as do a growing number of IoT devices. Now, a new Bluetooth exploit, known as BlueBorne, exploits a number of Bluetooth vulnerabilities, making literally billions of devices potentially vulnerable to attack.
BlueBorne is a hybrid Trojan-Worm malware that spreads via Bluetooth. Because it includes worm-like properties, any infected system is also a potential carrier, and will actively search for vulnerable hosts. Unfortunately, vulnerable hosts can include any Bluetooth-enabled device, including Android, iOS, Mac OSX, a
arXiv
Approach for GDPR Compliant Detection of COVID-19 Infection Chains
arxiv_fulltext·2020-07-20
Approach for GDPR Compliant Detection of COVID-19 Infection Chains
Approach for GDPR Compliant Detection of COVID-19 Infection Chains
Louis Tajan Dirk Westhoff
Hochschule Offenburg University of Applied Sciences
Offenburg, Germany
louis.tajan, [email protected]
## Abstract
While prospect of tracking mobile devices' users is widely discussed all over European countries to counteract COVID-19 propagation, we propose a Bloom filter based construction providing users' location privacy and preventing mass surveillance.
We apply a solution based on Bloom filters data structure that allows a 3rd party, a government agency, to perform some privacy-preserving set relations on a mobile telco’s access logfile.
By computing set relations, the government agency, given the knowledge of two identified persons, has an instrument that provides a (possib
http://seclists.org/fulldisclosure/2019/May/24http://www.securityfocus.com/bid/100816https://seclists.org/bugtraq/2019/May/30https://support.apple.com/kb/HT210121https://www.armis.com/bluebornehttp://seclists.org/fulldisclosure/2019/May/24http://www.securityfocus.com/bid/100816https://seclists.org/bugtraq/2019/May/30https://support.apple.com/kb/HT210121https://www.armis.com/blueborne
2017-09-12
Published