Bluetooth Packet Dump Vulnerability in Samsung Galaxy Gear Series
CVE-2018-16270
7.5HIGH
What is CVE-2018-16270?
The Samsung Galaxy Gear series prior to build RE2 contains the hcidump utility, which inadvertently allows unprivileged processes to access and dump Bluetooth HCI packets. This lack of permission restrictions can lead to potential exploitation, enabling attackers to capture sensitive Bluetooth communication. Users of affected devices should be aware of the risks and consider applying available updates to mitigate exposure.