<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:03:42.748643+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2024:11154</id>
    <title>ALSA-2024:11154 — Moderate: bluez security update</title>
    <updated>2026-10-03T08:03:42.991607+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: bluez, AlmaLinux:8: bluez-cups, AlmaLinux:8: bluez-hid2hci, AlmaLinux:8: bluez-libs, AlmaLinux:8: bluez-libs-devel, AlmaLinux:8: bluez-obexd</p>
<p>The bluez packages contain the following utilities for use in Bluetooth applications: hcitool, hciattach, hciconfig, bluetoothd, l2ping, start scripts (AlmaLinux), and pcmcia configuration files.</p>
<p>Security Fix(es):</p>
<p>* bluez: unauthorized HID device connections allows keystroke injection and arbitrary commands execution (CVE-2023-45866)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2024:11154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-08562</id>
    <title>bdu:2023-08562</title>
    <updated>2026-10-03T08:03:42.991678+00:00</updated>
    <content>bdu:2023-08562</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-08562"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2023-45866</id>
    <title>BELL-CVE-2023-45866</title>
    <updated>2026-10-03T08:03:42.991695+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: bluez</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2023-45866"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0995</id>
    <title>certfr-2023-avi-0995 — De multiples vulnérabilités ont été découvertes dans Google Android.
Certaines d'entre elles permettent à un attaquant…</title>
    <updated>2026-10-03T08:03:42.991712+00:00</updated>
    <content>certfr-2023-avi-0995</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0995"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-259884</id>
    <title>EUVD-2026-259884</title>
    <updated>2026-10-03T08:03:42.991727+00:00</updated>
    <content>EUVD-2026-259884</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-259884"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-45866</id>
    <title>fkie_cve-2023-45866</title>
    <updated>2026-10-03T08:03:42.991737+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-45866"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qjcj-xg77-6c32</id>
    <title>GHSA-qjcj-xg77-6c32</title>
    <updated>2026-10-03T08:03:42.991767+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qjcj-xg77-6c32"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-45866</id>
    <title>gsd-2023-45866</title>
    <updated>2026-10-03T08:03:42.991784+00:00</updated>
    <content>gsd-2023-45866</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-45866"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2023-45866</id>
    <title>msrc_CVE-2023-45866 — Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encr…</title>
    <updated>2026-10-03T08:03:42.991794+00:00</updated>
    <content>msrc_CVE-2023-45866</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2023-45866"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2023-1948</id>
    <title>OESA-2023-1948 — bluez security update</title>
    <updated>2026-10-03T08:03:42.991812+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: bluez, openEuler:20.03-LTS-SP3: bluez, openEuler:20.03-LTS-SP4: bluez, openEuler:22.03-LTS: bluez, openEuler:22.03-LTS-SP1: bluez, openEuler:22.03-LTS-SP2: bluez</p>
<p>This package provides all utilities for use in Bluetooth applications. The BLUETOOTH trademarks are owned by Bluetooth SIG, Inc., U.S.A.

Security Fix(es):

Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.(CVE-2023-45866)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2023-1948"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:13507-1</id>
    <title>openSUSE-SU-2024:13507-1 — bluez-5.70-2.1 on GA media</title>
    <updated>2026-10-03T08:03:42.991842+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>bluez-5.70-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:13507-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:03269-1</id>
    <title>SUSE-SU-2025:03269-1 — Security update for bluez</title>
    <updated>2026-10-03T08:03:42.991858+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for bluez</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:03269-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-45866</id>
    <title>UBUNTU-CVE-2023-45866</title>
    <updated>2026-10-03T08:03:42.991871+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: bluez, Ubuntu:Pro:18.04:LTS: bluez, Ubuntu:20.04:LTS: bluez, Ubuntu:22.04:LTS: bluez, Ubuntu:24.04:LTS: bluez</p>
<p>Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-45866"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3057</id>
    <title>WID-SEC-W-2023-3057 — Google Android: Mehrere Schwachstellen</title>
    <updated>2026-10-03T08:03:42.991894+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Privilegien zu erhöhen, einen Denial-of-Service-Zustand zu verursachen oder vertrauliche Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3057"/>
  </entry>
</feed>
