CVE-2020-6616
08.05.2020, 20:15
Some Broadcom chips mishandle Bluetooth random-number generation because a low-entropy Pseudo Random Number Generator (PRNG) is used in situations where a Hardware Random Number Generator (HRNG) should have been used to prevent spoofing. This affects, for example, Samsung Galaxy S8, S8+, and Note8 devices with the BCM4361 chipset. The Samsung ID is SVE-2020-16882 (May 2020).Enginsight
Vendor | Product | Version |
---|---|---|
android | - | |
apple | ipados | 𝑥 < 13.5 |
apple | iphone_os | 𝑥 < 13.5 |
apple | mac_os_x | 10.13.0 ≤ 𝑥 < 10.13.6 |
apple | mac_os_x | 10.14.0 ≤ 𝑥 < 10.14.6 |
apple | mac_os_x | 10.15 ≤ 𝑥 < 10.15.4 |
apple | mac_os_x | 10.13.6:security_update_2018-002 |
apple | mac_os_x | 10.13.6:security_update_2018-003 |
apple | mac_os_x | 10.13.6:security_update_2019-001 |
apple | mac_os_x | 10.13.6:security_update_2019-002 |
apple | mac_os_x | 10.13.6:security_update_2019-003 |
apple | mac_os_x | 10.13.6:security_update_2019-004 |
apple | mac_os_x | 10.13.6:security_update_2019-005 |
apple | mac_os_x | 10.13.6:security_update_2019-006 |
apple | mac_os_x | 10.13.6:security_update_2019-007 |
apple | mac_os_x | 10.13.6:security_update_2020-001 |
apple | mac_os_x | 10.13.6:supplemental_update |
apple | mac_os_x | 10.14.6:security_update_2019-001 |
apple | mac_os_x | 10.14.6:security_update_2019-002 |
apple | mac_os_x | 10.14.6:security_update_2019-004 |
apple | mac_os_x | 10.14.6:security_update_2019-005 |
apple | mac_os_x | 10.14.6:security_update_2019-006 |
apple | mac_os_x | 10.14.6:security_update_2019-007 |
apple | mac_os_x | 10.14.6:security_update_2020-001 |
apple | mac_os_x | 10.14.6:supplemental_update |
apple | mac_os_x | 10.14.6:supplemental_update_2 |
𝑥
= Vulnerable software versions
References