4.3
CVSSv3

CVE-2022-38788

Published: 15/09/2022 Updated: 20/09/2022
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue exists in Nokia FastMile 5G Receiver 5G14-B 1.2104.00.0281. Bluetooth on the Nokia ODU uses outdated pairing mechanisms, allowing an malicious user to passively intercept a paring handshake and (after offline cracking) retrieve the PIN and LTK (long-term key).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nokia fastmile_5g_receiver_firmware 1.2104.00.0281

Github Repositories

Nokia-FastMile-5G-Receiver-5G14-B CVE-2022-38788 CVSS v31 Vector:AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L (5,5) [Description] An issue was discovered in Nokia FastMile 5G Receiver 5G14-B with software version 12104000281 Bluetooth on the Nokia ODU uses outdated pairing mechanisms, allowing an attacker to passively intercept a paring handshake and (after offline cracking) retrie