Samsung Galaxy Buds and Galaxy Buds 2 audio devices are Bluetooth pairable by default without user input nor a way to stop this mode. As a consequence, audio playback takeover or even microphone recording without user consent or notification is achieved. Note: This is considered a low severity vulnerability by the vendor.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.tarlogic.com/blog/cve-2024-58101 |
|
History
Thu, 15 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-862 | |
| Metrics |
cvssV3_1
|
Wed, 14 May 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Samsung Galaxy Buds and Galaxy Buds 2 audio devices are Bluetooth pairable by default without user input nor a way to stop this mode. As a consequence, audio playback takeover or even microphone recording without user consent or notification is achieved. Note: This is considered a low severity vulnerability by the vendor. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-05-14T00:00:00.000Z
Updated: 2025-05-15T14:07:24.807Z
Reserved: 2025-03-06T00:00:00.000Z
Link: CVE-2024-58101
Updated: 2025-05-15T14:07:17.931Z
Status : Awaiting Analysis
Published: 2025-05-14T20:15:21.417
Modified: 2025-05-16T14:43:26.160
Link: CVE-2024-58101
No data.