CVE-2020-26558
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of the public key…
Does this matter?
Lower severity and a low EPSS score (0.87%). Track it; it rarely justifies an emergency change on its own.
Description
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of the public key and the authentication evidence of the initiating device, potentially permitting this attacker to complete authenticated pairing with the responding device using the correct Passkey for the pairing session. The attack methodology determines the Passkey value one bit at a time.
- CVSS 3.1
- 4.2 MEDIUMCVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
- EPSS
- 0.87% probability · 57th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- bluetooth/bluetooth core specification · fedoraproject/fedora · debian/debian linux · linux/linux kernel · intel/ax210 firmware · intel/ax201 firmware · intel/ax200 firmware · intel/ac 9560 firmware · intel/ac 9462 firmware · intel/ac 9461 firmware · intel/ac 9260 firmware · intel/ac 8265 firmware · intel/ac 8260 firmware · intel/ac 3168 firmware · intel/ac 7265 firmware · intel/ac 3165 firmware · intel/ax1675 firmware · intel/ax1650 firmware · intel/ac 1550 firmware
- Source
- cve@mitre.org
References
- https://kb.cert.org/vuls/id/799380Third Party Advisory, US Government Resource
- https://lists.debian.org/debian-lts-announce/2021/06/msg00019.htmlMailing List, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00020.htmlMailing List, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00022.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NSS6CTGE4UGTJLCOZOASDR3T3SLL6QJZ/
- https://security.gentoo.org/glsa/202209-16Third Party Advisory
- https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/reporting-security/Vendor Advisory
- https://www.debian.org/security/2021/dsa-4951Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00517.htmlThird Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00520.htmlThird Party Advisory
- https://kb.cert.org/vuls/id/799380Third Party Advisory, US Government Resource
- https://lists.debian.org/debian-lts-announce/2021/06/msg00019.htmlMailing List, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00020.htmlMailing List, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00022.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NSS6CTGE4UGTJLCOZOASDR3T3SLL6QJZ/
- https://security.gentoo.org/glsa/202209-16Third Party Advisory
- https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/reporting-security/Vendor Advisory
- https://www.debian.org/security/2021/dsa-4951Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00517.htmlThird Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00520.htmlThird Party Advisory
- https://www.kb.cert.org/vuls/id/799380
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.