CVE-2020-6616
Some Broadcom chips mishandle Bluetooth random-number generation because a low-entropy Pseudo Random Number Generator (PRNG) is used in situations where a Hardware Random Number Generator (HRNG) should have been used to prevent spoofing. This affects, for example, Samsung Galaxy S8, S8+, and Note8 devices with the BCM4361 chipset. The Samsung ID is SVE-2020-16882 (May 2020).
- Published date
- 2020-05-08T20:15Z
- Last modification date
- 2023-01-09T16:41Z
- Assigner
- cve@mitre.org
- Problem type
- NVD-CWE-noinfo
Impact
- CVSS v3 vector string
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name | URL | Source | Tags |
---|---|---|---|
https://github.com/seemoo-lab/internalblue/blob/master/doc/rng.md | https://github.com/seemoo-lab/internalblue/blob/master/doc/rng.md | MISC | Third Party Advisory |
https://twitter.com/naehrdine/status/1255980443368919045 | https://twitter.com/naehrdine/status/1255980443368919045 | MISC | Third Party Advisory |
https://twitter.com/naehrdine/status/1255981245147877377 | https://twitter.com/naehrdine/status/1255981245147877377 | MISC | Third Party Advisory |
https://security.samsungmobile.com/securityUpdate.smsb | https://security.samsungmobile.com/securityUpdate.smsb | CONFIRM | Vendor Advisory |
http://bluetooth.lol | http://bluetooth.lol | MISC | Third Party Advisory |
https://media.ccc.de/v/DiVOC-6-finding_eastereggs_in_broadcom_s_bluetooth_random_number_generator | https://media.ccc.de/v/DiVOC-6-finding_eastereggs_in_broadcom_s_bluetooth_random_number_generator | MISC | Exploit, Third Party Advisory |
https://support.apple.com/kb/HT211100 | https://support.apple.com/kb/HT211100 | CONFIRM | Third Party Advisory |
https://support.apple.com/kb/HT211168 | https://support.apple.com/kb/HT211168 | CONFIRM | Third Party Advisory |
20200529 APPLE-SA-2020-05-26-1 iOS 13.5 and iPadOS 13.5 | http://seclists.org/fulldisclosure/2020/May/49 | FULLDISC | Mailing List, Third Party Advisory |
https://support.apple.com/HT211168 | https://support.apple.com/HT211168 | CONFIRM | Third Party Advisory |