VYPR

BLURtooth

by Toshiba

CVEs (1)

  • CVE-2020-15802MedSep 11, 2020
    risk 0.39cvss 5.9epss 0.07

    Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivation in Bluetooth Core Specification v4.2 and v5.0 may permit an unauthenticated user to establish a bonding with one transport, either LE or BR/EDR, and replace…