{"id":112094,"date":"2023-12-09T21:10:14","date_gmt":"2023-12-09T19:10:14","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish"},"modified":"2023-12-09T21:10:14","modified_gmt":"2023-12-09T19:10:14","slug":"uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish","status":"publish","type":"post","link":"https:\/\/prohoster.info\/de\/blog\/news\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish","title":{"rendered":"Sicherheitsanf\u00e4lligkeit in den Bluetooth-Stacks von Linux, macOS, Android und iOS, die die Manipulation von Tasteneingaben erm\u00f6glicht","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Marc Newlin hat vor sieben Jahren eine Schwachstelle namens MouseJack entdeckt und k\u00fcrzlich Informationen \u00fcber eine \u00e4hnliche Schwachstelle (CVE-2023-45866) ver\u00f6ffentlicht, die Bluetooth-Stacks unter Android, Linux, macOS und iOS betrifft. Diese erm\u00f6glicht es, Tastatureingaben zu simulieren, indem Aktivit\u00e4ten eines Eingabeger\u00e4ts, das \u00fcber Bluetooth verbunden ist, nachgeahmt werden. Mit Zugang zur Tastatureingabe kann der Angreifer Aktionen ausf\u00fchren wie das Starten von Befehlen im System, das Installieren von Anwendungen und das Umleiten von Nachrichten.     <\/p>\n<p>Die Schwachstelle entsteht dadurch, dass die Host-HID (Human Interface Device) Treiber f\u00fcr Bluetooth-Ger\u00e4te einen Modus haben, der es einem entfernten Peripherieger\u00e4t erm\u00f6glicht, verschl\u00fcsselte Verbindungen ohne Authentifizierung zu erstellen und zu etablieren. Unter anderem k\u00f6nnen sich auf diese Weise verbundene Ger\u00e4te Tastaturmeldungen \u00fcbermitteln, und der HID-Stack verarbeitet diese, was es erm\u00f6glicht, eine Fernangriff auf HID-Nachrichten ohne Benutzerinteraktion durchzuf\u00fchren. Der Angriff kann durchgef\u00fchrt werden, w\u00e4hrend sich der Angreifer bis zu 100 Meter von seinem Ziel entfernt befindet.    <\/p>\n<p>Der Mechanismus zur Koppelung von Ger\u00e4ten ohne Authentifizierung ist in der Bluetooth-Spezifikation definiert und erlaubt es je nach Einstellung des Bluetooth-Stacks, ein Ger\u00e4t ohne Best\u00e4tigung des Benutzers zu verbinden. In Linux muss der Bluetooth-Adapter mit dem BlueZ-Stack f\u00fcr versteckte Verbindungen im Erkennungs- und Verbindungsmodus sein. In Android reicht es aus, Bluetooth zu aktivieren. In iOS und macOS muss Bluetooth eingeschaltet und eine kabellose Tastatur verbunden sein, um den Angriff durchzuf\u00fchren.        <\/p>\n<p>Die M\u00f6glichkeit zur Eingabemanipulation wurde in Ubuntu 18.04, 20.04, 22.04 und 23.10 mit einem auf BlueZ basierenden Bluetooth-Stack demonstriert. ChromeOS ist nicht anf\u00e4llig, da die Einstellungen des Bluetooth-Stacks dort keine Verbindung ohne Authentifizierung zulassen. In Android betrifft die Schwachstelle Ger\u00e4te mit Plattformversionen von 4.2.2 bis 14. In macOS wurde die Schwachstelle auf einem MacBook Pro 2022 mit CPU Apple M2 und macOS 13.3.3 sowie einem MacBook Air 2017 mit Intel-CPU und macOS 12.6.7 demonstriert. In iOS wurde die Schwachstelle auf einem iPhone SE mit iOS 16.6 demonstriert. Das Aktivieren des Lockdown-Modus sch\u00fctzt nicht vor dem Angriff auf macOS und iOS.      <\/p>\n<p>In Linux wurde die Sicherheitsanf\u00e4lligkeit im Code von Bluez durch das Setzen der Einstellung \u201eClassicBondedOnly\u201c auf \u201etrue\u201c behoben, was den sicheren Modus aktiviert, der Verbindungen nur nach einer Paarung erlaubt. Zuvor war der Wert auf \u201efalse\u201c gesetzt, was aus Gr\u00fcnden der Kompatibilit\u00e4t mit einigen Eingabeger\u00e4ten auf Kosten der Sicherheit gel\u00f6st wurde.     <\/p>\n<p>Im Bluetooth-Stack Fluoride, der in den neuesten Android-Versionen verwendet wird, wurde die Schwachstelle durch die zwingende Anwendung von Authentifizierung f\u00fcr alle verschl\u00fcsselten Verbindungen behoben. Die Korrekturen f\u00fcr Android wurden nur f\u00fcr die Versionen 11-14 bereitgestellt. F\u00fcr Pixel-Ger\u00e4te wurde die Schwachstelle im Firmware-Update vom Dezember behoben. F\u00fcr Android-Versionen von 4.2.2 bis 10 bleibt die Schwachstelle unbehoben.<br \/>\n<br \/>Quelle: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=60260\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041c\u0430\u0440\u043a \u041d\u044c\u044e\u043b\u0438\u043d (Marc Newlin), \u0441\u0435\u043c\u044c \u043b\u0435\u0442 \u043d\u0430\u0437\u0430\u0434 \u0432\u044b\u044f\u0432\u0438\u0432\u0448\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c MouseJack, \u0440\u0430\u0441\u043a\u0440\u044b\u043b \u0441\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u043e \u043f\u043e\u0445\u043e\u0436\u0435\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 (CVE-2023-45866), \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u044e\u0449\u0435\u0439 Bluetooth-\u0441\u0442\u0435\u043a\u0438 Android, Linux, macOS \u0438 iOS, \u0438 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043e\u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0438\u0442\u044c \u043f\u043e\u0434\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0443 \u043d\u0430\u0436\u0430\u0442\u0438\u0439 \u043a\u043b\u0430\u0432\u0438\u0448 \u0447\u0435\u0440\u0435\u0437 \u0441\u0438\u043c\u0443\u043b\u044f\u0446\u0438\u044e \u0430\u043a\u0442\u0438\u0432\u043d\u043e\u0441\u0442\u0438 \u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u0430 \u0432\u0432\u043e\u0434\u0430, \u043f\u043e\u0434\u043a\u043b\u044e\u0447\u0451\u043d\u043d\u043e\u0433\u043e \u0447\u0435\u0440\u0435\u0437 Bluetooth. \u0418\u043c\u0435\u044f \u0434\u043e\u0441\u0442\u0443\u043f \u043a \u043a\u043b\u0430\u0432\u0438\u0430\u0442\u0443\u0440\u043d\u043e\u043c\u0443 \u0432\u0432\u043e\u0434\u0443 \u0430\u0442\u0430\u043a\u0443\u044e\u0449\u0438\u0439 \u043c\u043e\u0436\u0435\u0442 \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u0442\u0430\u043a\u0438\u0435 \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f, \u043a\u0430\u043a \u0437\u0430\u043f\u0443\u0441\u043a \u043a\u043e\u043c\u0430\u043d\u0434 \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435, \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0430 \u043f\u0440\u0438\u043b\u043e\u0436\u0435\u043d\u0438\u0439 \u0438 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-112094","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041c\u0430\u0440\u043a \u041d\u044c\u044e\u043b\u0438\u043d (Marc Newlin), \u0441\u0435\u043c\u044c \u043b\u0435\u0442 \u043d\u0430\u0437\u0430\u0434 \u0432\u044b\u044f\u0432\u0438\u0432\u0448\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c MouseJack, \u0440\u0430\u0441\u043a\u0440\u044b\u043b \u0441\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u043e \u043f\u043e\u0445\u043e\u0436\u0435\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 (CVE-2023-45866), \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u044e\u0449\u0435\u0439 Bluetooth-\u0441\u0442\u0435\u043a\u0438 Android, Linux, macOS \u0438 iOS, \u0438 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043e\u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0438\u0442\u044c.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/de\/blog\/news\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"de_DE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 Bluetooth-\u0441\u0442\u0435\u043a\u0430\u0445 Linux, macOS, Android \u0438 iOS, \u0434\u043e\u043f\u0443\u0441\u043a\u0430\u044e\u0449\u0430\u044f \u043f\u043e\u0434\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0443 \u043d\u0430\u0436\u0430\u0442\u0438\u0439 \u043a\u043b\u0430\u0432\u0438\u0448 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041c\u0430\u0440\u043a \u041d\u044c\u044e\u043b\u0438\u043d (Marc Newlin), \u0441\u0435\u043c\u044c \u043b\u0435\u0442 \u043d\u0430\u0437\u0430\u0434 \u0432\u044b\u044f\u0432\u0438\u0432\u0448\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c MouseJack, \u0440\u0430\u0441\u043a\u0440\u044b\u043b \u0441\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u043e \u043f\u043e\u0445\u043e\u0436\u0435\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 (CVE-2023-45866), \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u044e\u0449\u0435\u0439 Bluetooth-\u0441\u0442\u0435\u043a\u0438 Android, Linux, macOS \u0438 iOS, \u0438 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043e\u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0438\u0442\u044c.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/de\/blog\/news\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2023-12-09T19:10:14+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2023-12-09T19:10:14+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47 Schwachstelle in den Bluetooth-Stacks von Linux, macOS, Android und iOS, die das Simulieren von Tasteneingaben zul\u00e4sst | ProHoster","description":"Marc Newlin, der vor sieben Jahren die Schwachstelle MouseJack entdeckte, hat Informationen \u00fcber eine \u00e4hnliche Schwachstelle (CVE-2023-45866) ver\u00f6ffentlicht, die Bluetooth-Stacks in Android, Linux, macOS und iOS betrifft und es erm\u00f6glicht,.","canonical_url":"https:\/\/prohoster.info\/de\/blog\/news\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"de_DE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 Bluetooth-\u0441\u0442\u0435\u043a\u0430\u0445 Linux, macOS, Android \u0438 iOS, \u0434\u043e\u043f\u0443\u0441\u043a\u0430\u044e\u0449\u0430\u044f \u043f\u043e\u0434\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0443 \u043d\u0430\u0436\u0430\u0442\u0438\u0439 \u043a\u043b\u0430\u0432\u0438\u0448 | ProHoster","og:description":"\u041c\u0430\u0440\u043a \u041d\u044c\u044e\u043b\u0438\u043d (Marc Newlin), \u0441\u0435\u043c\u044c \u043b\u0435\u0442 \u043d\u0430\u0437\u0430\u0434 \u0432\u044b\u044f\u0432\u0438\u0432\u0448\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c MouseJack, \u0440\u0430\u0441\u043a\u0440\u044b\u043b \u0441\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u043e \u043f\u043e\u0445\u043e\u0436\u0435\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 (CVE-2023-45866), \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u044e\u0449\u0435\u0439 Bluetooth-\u0441\u0442\u0435\u043a\u0438 Android, Linux, macOS \u0438 iOS, \u0438 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043e\u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0438\u0442\u044c.","og:url":"https:\/\/prohoster.info\/de\/blog\/news\/uyazvimost-v-bluetooth-stekah-linux-macos-android-i-ios-dopuskayushhaya-podstanovku-nazhatij-klavish","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2023-12-09T19:10:14+00:00","article:modified_time":"2023-12-09T19:10:14+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/112094","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/comments?post=112094"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/112094\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media?parent=112094"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/categories?post=112094"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/tags?post=112094"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}