CVE-2026-65935: Bypassing passkey entry in legacy pairing
Published Aug 13, 2026
·Updated
Passkey entry Bluetooth LE legacy pairing can be bypassed in the RS9116W and SiWx917 by manipulating the temporary key value. See vulnerability B-E3 in the related paper below.
Affected Software
1 affected component
RS9116W
Event History
Aug 13, 2026
CVE Published
via MITRE·02:24 PM
Data Sourced
via MITRE·02:24 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-65935?
CVE-2026-65935 has a risk score of 47, indicating a moderate level of severity.
2
How do I fix CVE-2026-65935?
To mitigate CVE-2026-65935, update the firmware of the RS9116W and SiWx917 to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2026-65935?
CVE-2026-65935 affects devices using the RS9116W and SiWx917 Bluetooth LE modules.
4
What is the impact of CVE-2026-65935?
The impact of CVE-2026-65935 allows unauthorized access by bypassing passkey entry in Bluetooth LE legacy pairing.
5
When was CVE-2026-65935 published?
CVE-2026-65935 was published on August 13, 2026.