CVE-2019-9506

Modified
Published: 14 Aug 2019, 16:27
Last modified:16 Sept 2024, 19:14

Vulnerability Summary

Overall Risk (default)
medium
33/100
CVSS Score
8.1 HIGH
v3.1 (nvd)
EPSS Score
4.15% LOW
4% probability -0.64%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

14 Aug 2019, 16:27
Published
Vulnerability first disclosed
16 Sept 2024, 19:14
Last Modified
Vulnerability information updated

Description

The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") that can decrypt traffic and inject arbitrary ciphertext without the victim noticing.

CVSS Metrics

  • v3.1HIGHScore: 8.1CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
  • v3.0HIGHScore: 7.6CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
  • v2.0MEDIUMScore: 4.8AV:A/AC:L/Au:N/C:P/I:P/A:N

EPSS Trends

Current EPSS score: 4.15% Percentile: 89%

Techniques & Countermeasures

  • CWE-327Use of a Broken or Risky Cryptographic Algorithm

    The product uses a broken or risky cryptographic algorithm or protocol.

  • CWE-310Cryptographic Issues

    Weaknesses in this category are related to the design and implementation of data confidentiality and integrity. Frequently these deal with the use of encoding techniques, encryption libraries, and hashing algorithms. The weaknesses in this category could lead to a degradation of the quality data if they are not addressed.

Affected Systems

  • appleiphone_os

    12.4

  • applemac_os_x

    10.12.6 | 10.13.6 | 10.14.5

  • appletvos

    12.4

  • applewatchos

    5.3

  • bluetoothbr/edr

    5.1

  • canonicalubuntu_linux

    16.04 | 18.04 | 19.04

  • debiandebian_linux

    8.0

  • googleandroid

    na

  • huaweialp-al00b

    < 9.1.0.333\(c00e333r2p1t8\)

  • huaweiares-al00b_firmware

    < 9.1.0.160\(c00e160r2p5t8\)

  • huaweiares-al10d_firmware

    < 9.1.0.160\(c00e160r2p5t8\)

  • huaweiares-tl00c_firmware

    < 9.1.0.165\(c01e165r2p5t8\)

  • huaweiasoka-al00ax_firmware

    < 9.1.1.181\(c00e48r6p1\)

  • huaweiatomu-l33_firmware

    < 8.0.0.147\(c605custc605d1\)

  • huaweiatomu-l41_firmware

    < 8.0.0.153\(c461custc461d1\)

  • huaweiatomu-l42_firmware

    < 8.0.0.155\(c636custc636d1\)

  • huaweibarca-al00_firmware

    < 8.0.0.366\(c00\)

  • huaweiberkeley-al20

    < 9.1.0.333\(c00e333r2p1t8\)

  • huaweiberkeley-l09

    < 9.1.0.332\(c432e5r1p13t8\) | < 9.1.0.350\(c10e3r1p14t8\) | < 9.1.0.350\(c636e4r1p13t8\)

  • huaweiberkeley-tl10_firmware

    < 9.1.0.333\(c01e333r1p1t8\)

  • huaweibla-al00b

    < 9.1.0.329\(c786e320r2p1t8\)

  • huaweibla-l29c

    < 9.1.0.300\(c605e2r1p12t8\) | < 9.1.0.306\(c185e2r1p13t8\) | < 9.1.0.306\(c432e4r1p11t8\) | < 9.1.0.306\(c636e2r1p13t8\) | < 9.1.0.307\(c635e4r1p13t8\)

  • huaweibla-tl00b_firmware

    < 9.1.0.329\(c01e320r1p1t8\)

  • huaweicairogo-l22_firmware

    < cairogo-l22c461b153

  • huaweicharlotte-l29c

    < 9.1.0.311\(c605e2r1p11t8\) | < 9.1.0.325\(c185e4r1p11t8\) | < 9.1.0.325\(c636e2r1p12t8\) | < 9.1.0.328\(c432e5r1p9t8\) | < 9.1.0.328\(c782e10r1p9t8\)

  • huaweicolumbia-al10b

    < 9.1.0.333\(c00e333r1p1t8\)

  • huaweicolumbia-al10i_firmware

    < 9.1.0.335\(c675e8r1p9t8\)

  • huaweicolumbia-l29d

    < 9.1.0.350\(c10e5r1p14t8\) | < 9.1.0.350\(c185e3r1p12t8\) | < 9.1.0.350\(c461e3r1p11t8\) | < 9.1.0.350\(c636e3r1p13t8\) | < 9.1.0.351\(c432e5r1p13t8\)

  • huaweicolumbia-tl00d_firmware

    < 8.1.0.186\(c01gt\)

  • huaweicornell-al00a

    < 9.1.0.333\(c00e333r1p1t8\)

  • huaweicornell-al00i_firmware

    < 9.1.0.363\(c675e3r1p9t8\)

  • huaweicornell-al00ind_firmware

    < 8.2.0.141\(c675custc675d1gt\)

  • huaweicornell-al10ind_firmware

    < 9.1.0.363\(c675e2r1p9t8\)

  • huaweicornell-l29a

    < 9.1.0.336\(c636e2r1p12t8\) | < 9.1.0.341\(c185e1r1p9t8\) | < 9.1.0.342\(c461e1r1p9t8\) | < 9.1.0.347\(c432e1r1p9t8\)

  • huaweicornell-tl10b_firmware

    < 9.1.0.333\(c01e333r1p1t8\)

  • huaweidubai-al00a_firmware

    < 8.2.0.190\(c00r2p2\)

  • huaweidura-al00a_firmware

    < 1.0.0.182\(c00\)

  • huaweidura-tl00a_firmware

    < 1.0.0.176\(c01\)

  • huaweiemily-l29c

    8.1.0.156\(c605\) | < 9.1.0.311\(c461e2r1p11t8\) | < 9.1.0.325\(c185e2r1p12t8\) | < 9.1.0.325\(c636e7r1p13t8\) | < 9.1.0.326\(c635e2r1p11t8\) | < 9.1.0.328\(c432e7r1p11t8\)

  • huaweiever-l29b

    < 9.1.0.338\(c185e3r3p1\)

  • huaweifigo-l23

    < 9.1.0.160\(c605e6r1p5t8\)

  • huaweifigo-l31

    8.0.0.122d\(c652\) | < 9.1.0.122\(c09e7r1p5t8\) | < 9.1.0.137\(c33e8r1p5t8\) | < 9.1.0.137\(c530e8r1p5t8\) | < 9.1.0.158\(c432e8r1p5t8\) | < 9.1.0.165\(c10e8r1p5t8\)

  • huaweifigo-tl10b_firmware

    < 9.1.0.130\(c01e115r2p8t8\)

  • huaweiflorida-al20b_firmware

    < 9.1.0.128\(c00e112r1p6t8\)

  • huaweiflorida-l21

    < 9.1.0.150\(c185e6r1p5t8\) | < 9.1.0.150\(c432e6r1p5t8\)

  • huaweiflorida-l22

    < 9.1.0.150\(c636e6r1p5t8\)

  • huaweiflorida-l23

    < 9.1.0.154\(c605e7r1p2t8\)

  • huaweiflorida-tl10b_firmware

    < 9.1.0.128\(c01e112r1p6t8\)

  • huaweiharry-al00c_firmware

    na

  • huaweiharry-al10b_firmware

    na

Showing first 50 affected entries in server-rendered view.

References (30)