The Yale Bluetooth Key application for mobile devices allows unauthorized unlock actions by sniffing Bluetooth Low Energy (BLE) traffic during one authorized unlock action, and then calculating the authentication key via simple computations on the hex digits of a valid authentication request. This affects the Yale ZEN-R lock and unspecified other locks.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-10-16T11:48:53
Updated: 2024-08-05T01:47:13.487Z
Reserved: 2019-10-16T00:00:00
Link: CVE-2019-17627
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-10-16T12:15:12.103
Modified: 2024-11-21T04:32:39.590
Link: CVE-2019-17627
Redhat
No data.