if you're on linux and use bluetooth, you should upgrade to 5.9 immediately or stop using bluetooth.
zero-click RCE:
https://twitter.com/theflow0/status/1316071793707364353
writeup:
https://github.com/google/security-research/security/advisories/GHSA-h637-c88j-47wq
yikes
spam
@hazel never use wireless devices never use wireless devices never use wireless devices never use wireless devices never use wireless devices never use wireless devices never use wireless devices never use wireless devices
spam
@luna i use wireless headphones
spam
@hazel I'm so paranoid about connecting things to my PC
@hazel the fuck
@jeder it's literally just type confusion is the worst thing
i hate c
@hazel well shit, guess i gotta disable it on my pi's since the latest kernel version they have is 5.4, at least for arch linux, rip
@EeveeEuphoria if you aren't like, physically near someone else, it's probably fine
but do NOT turn bluetooth on in a public space
@jeder @EeveeEuphoria no auth, no pairing, nothing
@hazel I guess this also applies to android?
looking at my phone running kernel 4.4 😢
@hazel Based OpenBSD doesn’t have this problem (no Bluetooth support in the kernel, lel).
@robby no.