carcarx
06-08-2005, 09:40 AM
June 04, FrSIRT - Bluetooth Protocol device pairing process remote
vulnerability. A vulnerability was identified in the Bluetooth Protocol,
which may be exploited by remote attackers to bypass certain security
measures. This flaw is due to a design error in the pairing process
initialized by two Bluetooth devices in order to create a shared secret
value, which may be exploited by an attacker to force the repairing process,
determine a valid link key, crack the PIN (Personal Identification Number)
and potentially hijack all the messages transferred between two Bluetooth
devices. There is no solution at this time.
Source: http://www.frsirt.com/english/advisories/2005/0689
vulnerability. A vulnerability was identified in the Bluetooth Protocol,
which may be exploited by remote attackers to bypass certain security
measures. This flaw is due to a design error in the pairing process
initialized by two Bluetooth devices in order to create a shared secret
value, which may be exploited by an attacker to force the repairing process,
determine a valid link key, crack the PIN (Personal Identification Number)
and potentially hijack all the messages transferred between two Bluetooth
devices. There is no solution at this time.
Source: http://www.frsirt.com/english/advisories/2005/0689