SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2020-26558

Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of the public key…

MEDIUM 4.2EPSS 0.87%

Does this matter?

Lower severity and a low EPSS score (0.87%). Track it; it rarely justifies an emergency change on its own.

Description

Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of the public key and the authentication evidence of the initiating device, potentially permitting this attacker to complete authenticated pairing with the responding device using the correct Passkey for the pairing session. The attack methodology determines the Passkey value one bit at a time.

CVSS 3.1
4.2 MEDIUMCVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
EPSS
0.87% probability · 57th percentile
CISA KEV
Not listed
Weakness
CWE-287
Affected
bluetooth/bluetooth core specification · fedoraproject/fedora · debian/debian linux · linux/linux kernel · intel/ax210 firmware · intel/ax201 firmware · intel/ax200 firmware · intel/ac 9560 firmware · intel/ac 9462 firmware · intel/ac 9461 firmware · intel/ac 9260 firmware · intel/ac 8265 firmware · intel/ac 8260 firmware · intel/ac 3168 firmware · intel/ac 7265 firmware · intel/ac 3165 firmware · intel/ax1675 firmware · intel/ax1650 firmware · intel/ac 1550 firmware
Source
cve@mitre.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.