Windows Bluetooth Service Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
According to the CVSS metric, the attack vector is adjacent (AV:A). What does that mean for this vulnerability? This vulnerability's attack is limited at the protocol level to a logically adjacent topology. This means it cannot simply be done across the internet, but instead needs something specific tied to the target. Good examples would include the same shared physical network (such as Bluetooth or IEEE 802.11), logical network (local IP subnet), or from within a secure or otherwise limited administrative domain (MPLS, secure VPN to an administrative network zone). This is common to many attacks that require machine-in-the-middle (MITM) type setups or that rely on initially gaining a foothold in another environment.
According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability? Successful exploitation of this vulnerability requires an attacker to prepare the target environment to improve exploit reliability.
🎯 Affected products20
- Windows 10 Version 1607 for 32-bit Systems
- Windows 10 Version 1607 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 20H2 for 32-bit Systems
- Windows 10 Version 20H2 for ARM64-based Systems
- Windows 10 Version 21H1 for 32-bit Systems
- Windows 10 Version 21H1 for ARM64-based Systems
- Windows 10 Version 21H1 for x64-based Systems
- Windows 10 Version 21H2 for 32-bit Systems
- Windows 10 Version 21H2 for ARM64-based Systems
- Windows 10 Version 21H2 for x64-based Systems
- Windows 10 for 32-bit Systems
- Windows 10 for x64-based Systems
- Windows 11 version 21H2 for ARM64-based Systems
- Windows 11 version 21H2 for x64-based Systems
- Windows 8.1 for 32-bit systems
- Windows 8.1 for x64-based systems
- Windows RT 8.1
✅ Remediation
KB5016623 (Security Update) — fixed build 10.0.17763.3287 KB5016616 (Security Update) — fixed build 10.0.19043.1889 KB5016616 (Security Update) — fixed build 10.0.19042.1889 KB5016629 (Security Update) — fixed build 10.0.22000.856 KB5016616 (Security Update) — fixed build 10.0.19044.1889 KB5016639 (Security Update) — fixed build 10.0.10240.19387 KB5016622 (Security Update) — fixed build 10.0.14393.5291 KB5016681 (Monthly Rollup) — fixed build 6.3.9600.20520 KB5016683 (Security Only) — fixed build 6.3.9600.20520
🔗 References (11)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-30144
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016623
- referencehttps://support.microsoft.com/help/5016623
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016616
- referencehttps://support.microsoft.com/help/5016616
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016629
- referencehttps://support.microsoft.com/help/5016629
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016639
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016622
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016681
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016683