CVE Database
/

CVE-2021-3658

Back to search

CVE-2021-3658

Published: Mar 2, 2022

Modified: Apr 15, 2026

PUBLISHED

Description

bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up. If a device is powered down while discoverable, it will be discoverable when powered on again. This could lead to inadvertent exposure of the bluetooth stack to physically nearby attackers.

VendorProductVersions

n/a

bluez

affected
Fixedin - 5.61 and above.

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now