Description
The firmware in Lenovo Ultraslim dongles, as used with Lenovo Liteon SK-8861, Ultraslim Wireless, and Silver Silk keyboards and Liteon ZTM600 and Ultraslim Wireless mice, does not enforce incrementing AES counters, which allows remote attackers to inject encrypted keyboard input into the system by leveraging proximity to the dongle, aka a "KeyJack injection attack."
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-7187 | The firmware in Lenovo Ultraslim dongles, as used with Lenovo Liteon SK-8861, Ultraslim Wireless, and Silver Silk keyboards and Liteon ZTM600 and Ultraslim Wireless mice, does not enforce incrementing AES counters, which allows remote attackers to inject encrypted keyboard input into the system by leveraging proximity to the dongle, aka a "KeyJack injection attack." |
References
History
No history.
Subscriptions
Amazonbasics
Subscribe
Firmware
Subscribe
Usb Dongle
Subscribe
Wireless Keyboard
Subscribe
Dell
Subscribe
Km632 Dongle
Subscribe
Km632 Firmware
Subscribe
Km632 Wireless Keyboard
Subscribe
Km714 Dongle
Subscribe
Km714 Firmware
Subscribe
Km714 Wireless Keyboard
Subscribe
Lenovo
Subscribe
Ultraslim Dongle
Subscribe
Ultraslim Firmware
Subscribe
Ultraslim Wireless Keyboard
Subscribe
Logitech
Subscribe
Unifying Dongle
Subscribe
Unifying Firmware
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T01:22:20.922Z
Reserved: 2016-07-20T00:00:00.000Z
Link: CVE-2016-6257
No data.
Status : Deferred
Published: 2016-08-02T14:59:04.490
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-6257
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD