CVE-2014-7914

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/02/2020
Last modified:
26/02/2020

Description

btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a crafted NFC tag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:google:android:*:*:*:*:*:*:*:* 5.1 (excluding)