CVE-2022-46400

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) allows attackers to bypass passkey entry in legacy pairing.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microchip:bm78_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:bm78:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:microchip:bm83_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:bm83:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:microchip:rn4870_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:rn4870:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:microchip:rn4871_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:rn4871:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:microchip:bm70_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:bm70:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:microchip:bm71_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:bm71:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:microchip:pic_lightblue_explorer_demo_firmware:4.2_dt100112:*:*:*:*:*:*:*
cpe:2.3:h:microchip:pic_lightblue_explorer_demo:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:microchip:is1870_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:is1870:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:microchip:is1871_firmware:1.43:*:*:*:*:*:*:*
cpe:2.3:h:microchip:is1871:-:*:*:*:*:*:*:*

History

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-863 NVD-CWE-noinfo

Information

Published : 2022-12-19 23:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-46400

Mitre link : CVE-2022-46400

CVE.ORG link : CVE-2022-46400


JSON object : View

Products Affected

microchip

  • bm78_firmware
  • rn4871_firmware
  • bm71_firmware
  • pic_lightblue_explorer_demo
  • rn4871
  • is1871
  • bm71
  • pic_lightblue_explorer_demo_firmware
  • rn4870
  • is1871_firmware
  • is1870_firmware
  • bm78
  • bm83
  • bm70_firmware
  • bm70
  • rn4870_firmware
  • is1870
  • bm83_firmware