Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping

26-June-24

Apple has addressed a critical Bluetooth vulnerability in AirPods and other related devices (Powerbeats Pro, Beats Fit Pro) that could allow attackers within Bluetooth range to spoof paired devices and eavesdrop on conversations. Tracked as CVE-2024-27867, the issue has been fixed through firmware updates (AirPods Firmware Update 6A326, 6F8) that improve authentication and state management during connection requests. The discovery was credited to Jonas Dreßler. Additionally, Apple recently patched multiple vulnerabilities in visionOS, including a logic flaw (CVE-2024-27812) affecting WebKit that could lead to denial-of-service attacks when handling web content.

Read More…