Man-in-the-middle attack in MediaTek products - CVE-2018-5383
Published: July 24, 2018 / Updated: April 1, 2024
Vulnerability details
The vulnerability allows an adjacent attacker to conduct man-in-the-middle attack on the target system.
The weakness exists in the Bluetooth Low Energy (BLE) implementation of Secure Connections mode insufficient validation of elliptic curve parameters that are used to generate public keys during a Diffie-Hellman key exchange when the affected software performs device pairing operations. An adjacent attacker can intercept the public key exchange between the two targeted systems, inject a malicious public key to aid in determining the session key, access sensitive information or forge and modify messages, which could be used to inject malicious software on the targeted system.
Affected software
MT8167S
MT8532
MT8788
MT8518S
Google Android
watchOS
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
macOS
tvOS
Apple iOS
Opensuse
linux-firmware (Ubuntu package)
Data Computing Appliance (DCA)
How to mitigate CVE-2018-5383
macOS - update to 10.13.6 17G66
Data Computing Appliance (DCA) - update to 4.3.0.0
External References
Related Security Bulletins
- Multiple vulnerabilities in Apple macOS Sierra
- Multiple vulnerabilities in Apple iOS
- Multiple vulnerabilities in Apple watchOS
- Multiple vulnerabilities in Apple tvOS
- Multiple vulnerabilities in Google Android
- OpenSUSE Linux update for kernel-firmware
- Red Hat update for linux-firmware
- Ubuntu update for Linux firmware
- Multiple vulnerabilities in Dell EMC Data Computing Appliance (DCA)
- Multiple vulnerabilities in MediaTek chipsets