CVE-2020-15912: Medium severity tesla model 3 firmware vulnerability
Published Jul 23, 2020
·Updated
DISPUTED Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC Relay. NOTE: the vendor has developed Pin2Drive to mitigate this issue.
Affected Software
4 affected components
Tesla Model 3 Firmware
Tesla Model 3
All of the following
Tesla Model 3 Firmware
Tesla Model 3
Event History
Jul 23, 2020
CVE Published
via MITRE·02:40 PM
Data Sourced
via MITRE·02:40 PM
Description
Disputed
03:15 PM
Frequently Asked Questions
1
What is the severity of CVE-2020-15912?
The severity of CVE-2020-15912 is disputed due to the mitigation offered by Tesla's Pin2Drive feature.
2
How does CVE-2020-15912 affect Tesla Model 3 vehicles?
CVE-2020-15912 allows attackers with access to a legitimate key card to open a door using NFC Relay.
3
What mitigation has Tesla provided for CVE-2020-15912?
Tesla developed the Pin2Drive feature as a mitigation strategy for CVE-2020-15912.
4
Are all Tesla Model 3 vehicles vulnerable to CVE-2020-15912?
Only Tesla Model 3 vehicles running specific firmware versions are affected by CVE-2020-15912.
5
What should Tesla Model 3 owners do regarding CVE-2020-15912?
Tesla Model 3 owners should ensure their vehicles are updated with the latest firmware and use the Pin2Drive feature to enhance security.