CVE-2020-26559
Last modified
CVE-2020-26559 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (participating in the provisioning protocol) to identify the AuthValue used given the Provisioner’s public key, and the confirmation number and nonce provided by the provisioning device. This could permit a device without the AuthValue to complete provisioning without brute-forcing the AuthValue.. EPSS estimates a 0.85% chance of exploitation in the next 30 days.
Description
Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (participating in the provisioning protocol) to identify the AuthValue used given the Provisioner’s public key, and the confirmation number and nonce provided by the provisioning device. This could permit a device without the AuthValue to complete provisioning without brute-forcing the AuthValue.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Bluetooth | Mesh Profile | 1.0.0 |
| Bluetooth | Mesh Profile | 1.0.1 |
References
- https://kb.cert.org/vuls/id/799380Third Party Advisory, US Government Resource
- https://kb.cert.org/vuls/id/799380Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-26559?
How severe is CVE-2020-26559?
How do I fix CVE-2020-26559?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-26553An issue was discovered in Aviatrix Controller before R6.0.2…9.8
- CVE-2020-26554REDDOXX MailDepot 2033 (aka 2.3.3022) allows XSS via an inco…6.1
- CVE-2020-26555Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core S…5.4
- CVE-2020-26556Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.…7.5
- CVE-2020-26557Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.…7.5
- CVE-2020-26558Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Spe…4.2
- CVE-2020-2656Vulnerability in the Oracle Solaris product of Oracle System…4.4
- CVE-2020-26560Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.…8.1
- CVE-2020-26561Belkin LINKSYS WRT160NL 1.0.04.002_US_20130619 devices have …8.8
- CVE-2020-26563ObjectPlanet Opinio before 7.14 allows reflected XSS via the…6.1
- CVE-2020-26564ObjectPlanet Opinio before 7.15 allows XXE attacks via three…6.5
- CVE-2020-26565ObjectPlanet Opinio before 7.14 allows Expression Language I…7.5
Are you affected by CVE-2020-26559?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
