Medium severity4.3NVD Advisory· Published Jun 2, 2023· Updated Jun 17, 2026
CVE-2022-24695
CVE-2022-24695
Description
Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device information for Bluetooth transceivers in Non-Discoverable mode. By conducting an efficient over-the-air attack, an attacker can fully extract the permanent, unique Bluetooth MAC identifier, along with device capabilities and identifiers, some of which may contain identifying information about the device owner. This additionally allows the attacker to establish a connection to the target device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:bluetooth:bluetooth_core_specification:*:*:*:*:*:*:*:*Range: <=5.3
- Bluetooth Core Specification/Bluetooth Classicdescription
- Range: <=5.3
Patches
Vulnerability mechanics
References
3- sp2023.ieee-security.org/program-papers.htmlnvdTechnical Description
- www.bluetooth.com/specifications/specs/core-specification/nvdProduct
- www.computer.org/csdl/proceedings-article/sp/2023/933600a521/1He7Yja1AYMnvdTechnical Description
News mentions
0No linked articles in our index yet.