Insufficient Encryption Key Size in SMP Security for Silabs Products
CVE-2026-19293
8.8HIGH
What is CVE-2026-19293?
The SMP security request from peripheral devices does not adequately specify the maximum encryption key size supported, which raises concerns about the security of Bluetooth communications. This oversight facilitates the potential for brute-force attacks, as attackers can exploit weaker encryption keys that fall below the maximum threshold. Protecting against such vulnerabilities is crucial to maintaining robust security protocols in wireless communication systems.
Affected Version(s)
WiseConnect 4.0.0 < 4.1.0
WiseConnect 2.0.0 < 2.14.0
