Silicon Labs Z-Wave Security Advisory

2020-10-09
Subject: Z-Wave unsecure application frame injection between inclusion and secure bootstrapping.
Impacted Products:
•700 and 500 series based products .
Technical Summary:
•When including a Z-Wave node securely there is a window of up to 30 seconds from network inclusion ends to secure bootstrapping must start. In this window it is possible to send unsecure application frames to the node that can potentially alter the application behavior of the node.
•The attack must happen in the window between network inclusion and secure bootstrapping. Normally this window is <1s but the security specification allows for this window to be up to 30 seconds. The attacker must be physically present and within RF range of the including controller to carry out the attack.

Silicon Labs

700 Series500 Series

More

Part#

More

More

Development Environment(Software/Firmware)

More

More

Please see the document for details

More

More

English Chinese Chinese and English Japanese

53 KB

- The full preview is over,the data is 1 pages -
  • +1 Like
  • Add to Favorites

Recommend

All reproduced articles on this site are for the purpose of conveying more information and clearly indicate the source. If media or individuals who do not want to be reproduced can contact us, which will be deleted.

Contact Us

Email: