Impact
This vulnerability allows an attacker to spoof a device that has already been bonded, forcing the Silabs RS9116W or SiWx917 radio to drop its current bond and re‑pair with a rogue device. The resulting unauthorized pairing permits the attacker to impersonate the legitimate device, potentially injecting or intercepting data over BLE or Wi‑Fi and thus violating confidentiality and integrity. The weakness corresponds to CWE‑290 and carries a CVSS score of 8.8.
Affected Systems
The affected products are Silabs WiseConnect modules RS9116W and SiWx917. No specific firmware versions are listed in the CNA data, so users should check that their device is running the firmware version referenced in the provided release‑notes links.
Risk and Exploitability
The exploit can be performed over the Bluetooth Low Energy channel, typically requiring proximity to the target. EPSS data is not available, but the high CVSS score signals a significant risk. The vulnerability is not currently listed in the CISA KEV catalog, and publicly documented attacks are limited to the academic BLERP paper. Nonetheless, because the flaw permits active impersonation of a bonded device, the risk warrants immediate attention.
OpenCVE Enrichment