Cov kws tshawb fawb qhia tawm Kev Tawm Tsam Tshiab ntawm Wi-Fi thiab Bluetooth Chips

Cov kws tshawb fawb tau nthuav tawm cov kev tawm tsam tshiab uas tuaj yeem siv cov peev txheej sib koom ntawm Wi-nkaus thiab Bluetooth cov khoom ntawm ntau hom kev siv rau ntawm-chip (SoC) tsim los ntawm Broadcom, Cypress, thiab Silicon Labs.

BleepingComputer ua ntej pom daim ntawv piav txog lub kev tshawb pom, uas yog lub npe "Attacks on Wireless Coexistence: Exploiting Cross-Technology Performance Features for Inter-Chip Privilege Escalation," thiab tau luam tawm los ntawm cov kws tshawb fawb los ntawm Secure Networking Lab ntawm University of Darmstadt thiab CNIT ntawm University of Brescia.

Cov kws tshawb fawb tau hais tias lawv "ua kom pom tias Bluetooth nti tuaj yeem ncaj qha rho tawm cov passwords network thiab tswj kev khiav tsheb ntawm Wi-Fi nti" vim tias "cov chips no sib koom cov khoom thiab cov peev txheej, xws li tib lub kav hlau txais xov lossis wireless spectrum," txawm tias lawv txhua tus. technically txiav txim siab cais chips.

Txog tam sim no cuaj qhov tsis zoo thiab raug pom (CVE) tus cim tau raug xa mus rau qhov tsis zoo no. Cov kws tshawb fawb tau hais tias lawv tau ceeb toom rau Bluetooth Special Interest Group nrog rau Intel, MediaTek, Marvell, NXP, Qualcomm, thiab Texas Instruments thiab cov tuam txhab tsim khoom uas lawv siv tau zoo.

Hackers yuav tsum ua tiav kev cuam tshuam ib qho ntawm cov chips wireless los siv cov kev tsis zoo no tawm tsam lwm cov nti. Qhov no tuaj yeem tso cai rau cov neeg tawm tsam nyiag Wi-nkaus lo lus zais tom qab cuam tshuam lub Bluetooth nti, cov kws tshawb fawb hais tias, lossis txhawm rau siv qhov tsis zoo sib txawv hauv ib qho ntawm cov chips kom nkag mus rau lwm qhov ntawm lub hom phiaj ntaus ntawv.

"Vim tias cov chips wireless sib txuas lus ncaj qha los ntawm kev sib koom ua ke nyuaj," cov kws tshawb fawb hais tias, "OS tsav tsheb tsis tuaj yeem lim txhua yam xwm txheej los tiv thaiv qhov kev tawm tsam tshiab no. Txawm hais tias tau tshaj tawm thawj qhov teeb meem kev nyab xeeb ntawm cov kev cuam tshuam no ntau dua ob xyoos dhau los, kev sib cuam tshuam ntawm cov chips tseem muaj kev cuam tshuam rau feem ntau ntawm peb qhov kev tawm tsam. "

Cov kws tshawb fawb hais tias lawv qhov kev tawm tsam tseem tuaj yeem tiv thaiv iOS 14.7 thiab Android 11 li. (uas txij li thaum tau hloov pauv los ntawm iOS 15 thiab Android 12, raws li txoj cai, tab sis daim ntawv tshaj tawm no tau ua ob xyoos dhau los.) Lawv kuj tau qhia lawv cov kev tawm tsam rau ntau yam ntawm lwm yam khoom siv, uas tau qhia hauv cov lus hauv qab no.

Pom zoo los ntawm Peb Cov Kws Kho Mob

Ib lub rooj qhia cov txiaj ntsig ntawm cov kev tawm tsam no ntawm ntau yam khoom

Tab sis qhov tsis muaj kev txo qis tsis zoo li tau los ua qhov xav tsis thoob. "Peb lub luag haujlwm tau tshaj tawm qhov tsis zoo rau tus neeg muag khoom," cov kws tshawb fawb hais. "Txawm li cas los xij, tsuas yog qee qhov kho tau raug tso tawm rau cov khoom siv uas twb muaj lawm txij li cov chips wireless yuav tsum tau rov tsim kho dua hauv av los tiv thaiv kev tawm tsam ntawm kev sib koom ua ke."

Broadcom, Cypress, thiab Silicon Labs tsis teb tam sim ntawd rau kev thov tawm tswv yim.

Zoo li koj nyeem dab tsi?

Sau npe rau Saib xyuas kev ruaj ntseg tsab ntawv xov xwm rau peb sab saum toj kev ceev ntiag tug thiab kev ruaj ntseg cov dab neeg xa ncaj qha rau koj lub inbox.

Tsab ntawv xov xwm no yuav muaj kev tshaj tawm, kev sib cog lus, lossis kev sib koom ua ke. Kev sau npe rau tsab ntawv xov xwm qhia koj qhov kev tso cai rau peb Cov ntsiab lus uas siv thiab Tsis pub twg paub Txoj cai. Koj tuaj yeem tshem tawm cov ntawv xov xwm txhua lub sijhawm.



Tau qhov twg los