A session management issue was addressed with improved checks. This issue is fixed in Magic Keyboard Firmware Update 2.0.6. An attacker with physical access to the accessory may be able to extract its Bluetooth pairing key and monitor Bluetooth traffic.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT214050 | Release Notes Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2024-01-12 23:15
Updated : 2024-01-19 18:35
NVD link : CVE-2024-0230
Mitre link : CVE-2024-0230
CVE.ORG link : CVE-2024-0230
JSON object : View
Products Affected
apple
- magic_keyboard
- magic_keyboard_firmware
CWE