An attacker is able to downgrade the security of a Bluetooth LE connection by deleting an existing bond, spoofing the bonded device and creating a new bond.
Metrics
Affected Vendors & Products
References
History
Tue, 26 May 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Bluetooth LE Bonding Downgrade via Spoofing |
Tue, 26 May 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An attacker is able to downgrade the security of a Bluetooth LE connection by deleting an existing bond, spoofing the bonded device and creating a new bond. | |
| Weaknesses | CWE-290 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Silabs
Published: 2026-05-26T19:36:53.947Z
Updated: 2026-05-26T20:47:58.785Z
Reserved: 2026-05-15T13:12:50.026Z
Link: CVE-2026-8676
Updated: 2026-05-26T20:47:55.786Z
Status : Received
Published: 2026-05-26T21:16:44.630
Modified: 2026-05-26T21:16:44.630
Link: CVE-2026-8676
No data.