BlueBorne

What is BlueBorne?

A set of vulnerabilities that were announced in September 2017. These vulnerabilities affect devices using Bluetooth technology. The related operating systems include Android, iOS, Linux, and Microsoft Windows.

The vulnerabilities that relate to Linux, include one that consists of an information leak vulnerability. The user space process of the Bluetooth stack does not properly handle too long responses. The second vulnerability related to Linux is a stack overflow weaknesses within the BlueZ kernel. It causes memory corruption that may allow attackers gain full control.