ZeroHour

CVE-2020-26555

CVSS 3.1
5.4 medium
EPSS
<1%p57
Published
()
Modified
Description

Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN.

Vendors
bluetoothfedoraprojectintel
Products
bluetooth core specification, fedora, ax210 firmware, ax201 firmware, ax200 firmware, ac 9560 firmware, ac 9462 firmware, ac 9461 firmware, ac 9260 firmware, ac 8265 firmware, ac 8260 firmware, ac 3168 firmware
Weakness
CWE-863
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

In the news