2.4
CVE-2024-0230
- EPSS 4.61%
- Veröffentlicht 12.01.2024 23:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:26
- Quelle product-security@apple.com
- CVE-Watchlists
- Unerledigt
A session management issue was addressed with improved checks. This issue is fixed in Magic Keyboard Firmware Update 2.0.6. An attacker with physical access to the accessory may be able to extract its Bluetooth pairing key and monitor Bluetooth traffic.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apple ≫ Magic Keyboard Firmware Version < 2.0.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.61% | 0.888 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.4 | 0.9 | 1.4 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 2.4 | 0.9 | 1.4 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|