Description
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") that can decrypt traffic and inject arbitrary ciphertext without the victim noticing.
Exploits (2)
References (30)
... and 10 more
Scores
CVSS v3
8.1
EPSS
0.0446
EPSS Percentile
89.1%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Details
CWE
CWE-310
CWE-327
Status
published
Products (50)
apple/iphone_os
12.4
apple/mac_os_x
10.12.6
apple/mac_os_x
10.13.6
apple/mac_os_x
10.14.5
apple/tvos
12.4
apple/watchos
5.3
canonical/ubuntu_linux
16.04
canonical/ubuntu_linux
18.04
canonical/ubuntu_linux
19.04
debian/debian_linux
8.0
... and 40 more
Published
Aug 14, 2019
Tracked Since
Feb 18, 2026