Description
A vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android Application that could allow a nearby attacker within the Bluetooth interaction range to intercept files when transferred to a device not paired in Smart Connect.
Problem types
CWE-319: Cleartext Transmission of Sensitive Information
Product status
Any version before 08.0.1.011.0
Credits
Motorola/Lenovo thanks MS. Candidate Bai Xingyu, Ph.D. Candidate Liu Xiaofeng, Ph.D. Candidate Song Xiangpu, Prof. Hu Chengyu, Prof. Guo Shanqing from Shandong University for reporting this issue.
References
en-us.support.motorola.com/app/answers/detail/a_id/186727
support.lenovo.com/us/en/product_security/LEN-188742