GHSA-vm4r-7vjx-6f97HighCVSS 8.8

SMP security request (from peripheral) does not include the maximum encryption key size supported...

Published
August 13, 2026
Last Modified
August 13, 2026

🔗 CVE IDs covered (1)

📋 Description

SMP security request (from peripheral) does not include the maximum encryption key size supported. Using a key with less than the maximum keysize makes brute-forcing the key easier. See V6 in BLERP paper linked below.

🔗 References (6)