CVE-2026-19293: SMP security request
Published Aug 13, 2026
·Updated
SMP security request (from peripheral) does not include the maximum encryption key size supported. Using a key with less than the maximum keysize makes brute-forcing the key easier. See V6 in BLERP paper linked below.
Event History
Aug 13, 2026
CVE Published
via MITRE·02:18 PM
Data Sourced
via MITRE·02:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-19293?
The severity of CVE-2026-19293 is high, rated at 8.8.
2
What risks are associated with CVE-2026-19293?
CVE-2026-19293 poses a risk of easier brute-forcing of encryption keys due to insufficient key size support.
3
How do I fix CVE-2026-19293?
To mitigate CVE-2026-19293, ensure the use of maximum encryption key sizes in your security protocols.
4
What impact does CVE-2026-19293 have on data confidentiality?
CVE-2026-19293 can compromise data confidentiality by allowing attackers to brute-force encryption keys more easily.
5
When was CVE-2026-19293 published?
CVE-2026-19293 was published on August 13, 2026.