GHSA-974c-8m68-6h7cCriticalCVSS 9.8
In handleBondStateChanged of AdapterService.java, there is a possible way to skip pairing due to...
🔗 CVE IDs covered (1)
📋 Description
In handleBondStateChanged of AdapterService.java, there is a possible way to skip pairing due to a logic error in the code. This could lead to remote escalation of privilege without user consent with no additional execution privileges needed. User interaction is not needed for exploitation.