CVE Feed

    Dashboard / CVE / CVE-2018-19983

    CVE-2018-19983

    An issue was discovered on Sigma Design Z-Wave S0 through S2 devices. An attacker first prepares a Z-Wave frame-transmission program (e.g., Z-Wave PC Controller, OpenZWave, CC1110, etc.). Next, the attacker conducts a DoS attack against the Z-Wave S0 Security version product by continuously sending divided "Nonce Get (0x98 0x81)" frames. The reason for dividing the "Nonce Get" frame is that, in security version S0, when a node receives a "Nonce Get" frame, the node produces a random new nonce and sends it to the Src node of the received "Nonce Get" frame. After the nonce value is generated and transmitted, the node transitions to wait mode. At this time, when "Nonce Get" is received again, the node discards the previous nonce value and generates a random nonce again. Therefore, because the frame is encrypted with previous nonce value, the received normal frame cannot be decrypted.

    Published:Dec 9, 2018
    Last Modified:Nov 21, 2024
    EPS:Dec 9, 2018
    EPSS Score:0.00084
    CVSS Score:6.5

    Affected Products

    Vendor
    Silabs
    Product
    Z-wave S0
    Vendor
    Silabs
    Product
    Z-wave S0 Firmware
    Vendor
    Silabs
    Product
    Z-wave S2
    Vendor
    Silabs
    Product
    Z-wave S2 Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High