cs.technion.ac.il
http://www.cs.technion.ac.il/~biham/BT CVE-2018-5383
MEDIUMRansomware
Bluetooth implementations may not sufficiently validate elliptic curve parameters during Diffie-Hellman key exchange
Record summary
CVE-2018-5383 has a selected CVSS score of 6.8 (medium). VulnCheck reports CVE-2018-5383 use in known ransomware campaigns.
Description
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Feb 25, 2020 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
- Ransomware use
- Observed · VulnCheck
Affected products and versions
4| Product | Source | Version range | Status |
|---|---|---|---|
| CVE List | Before 2018-06-05 patch level | affected | |
| CVE List | 11 to < 11.4 | affected | |
macOSBrowse Apple / macOS | CVE List | 10.13 High Sierra to < 10.13.6 | affected |
wl18xx_bluetooth_service_packBrowse ti / wl18xx_bluetooth_service_pack | VulnCheck | Version data not supplied | |
References
Showing 12 of 13104879vdb entry
http://www.securityfocus.com/bid/104879 1041432vdb entry
http://www.securitytracker.com/id/1041432 RHSA-2019:2169Vendor advisory
https://access.redhat.com/errata/RHSA-2019:2169 [debian-lts-announce] 20190402 [SECURITY] [DLA 1747-1] firmware-nonfree security updatemailing list
https://lists.debian.org/debian-lts-announce/2019/04/msg00005.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-5383 USN-4094-1Vendor advisory
https://usn.ubuntu.com/4094-1 USN-4095-1Vendor advisory
https://usn.ubuntu.com/4095-1 USN-4095-2Vendor advisory
https://usn.ubuntu.com/4095-2 USN-4118-1Vendor advisory
https://usn.ubuntu.com/4118-1 USN-4351-1Vendor advisory
https://usn.ubuntu.com/4351-1 bluetooth.comConfirmation
https://www.bluetooth.com/news/unknown/2018/07/bluetooth-sig-security-update