Vulnerabilities > CVE-2023-4258 - Unspecified vulnerability in Zephyrproject Zephyr 1.14.1/1.6.0/2.0.0

047910
CVSS 6.5 - MEDIUM
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
low complexity
zephyrproject

Summary

In Bluetooth mesh implementation If provisionee has a public key that is sent OOB then during provisioning it can be sent back and will be accepted by provisionee.