Skip To Main Content
Support Knowledge Base

Bluetooth® Key Negotiation Vulnerability

Content Type: Product Information & Documentation   |   Article ID: 000055198   |   Last Reviewed: 04/24/2025

Security researchers have identified a vulnerability in Bluetooth® Key Negotiation to the CERT Coordination Center and Bluetooth® supplier industry. 

Newly conducted research on an industry-wide vulnerability by computer scientists at the University of Oxford will be publicly disclosed at the USENIX Security Symposium, which takes place August 14-16, 2019. Referred to as “Bluetooth® Key Negotiation Vulnerability,” or “KNOB,” this research details an industry-wide vulnerability that affects the encryption key negotiation of Bluetooth® Basic Rate/Enhanced Data Rate (BR/EDR). This vulnerability doesn't affect Bluetooth® Low Energy (BLE). Intel products that support Bluetooth BR/EDR are among those affected by this industry-wide vulnerability. Our expectation is that mitigations addressing this vulnerability have already been made available (by OS vendors).

As a member of the Bluetooth Special Interest Group, we are working closely with the SIG and other key SIG members to develop mitigations. Protecting our customers and helping to ensure the security of our products is a critical priority for Intel.

Affected Products:

  • Intel® Wireless-AC products (3000 series, 7000 series, 8000 series, 9000 series)
  • Intel® Wi-Fi 6 products (AX200, AX201)
  • Intel® Wireless Gigabit products (17000 series, 18000 series)
  • Intel® Atom x3-C3200 Processor Series

Intel recommends that end users and systems administrators apply updates as they're made available, and follow good security practices in general.

Q&A

Q1. What is the vulnerability?
A new vulnerability was discovered during the Bluetooth® BR/EDR (Basic Rate/Enhanced Data Rate) key negotiation procedure. An attacker with physical proximity (usually within 30 meters) or line of sight can gain unauthorized access via an adjacent network, and intercept traffic to send forged negotiation messages between two vulnerable Bluetooth devices.

Q2. What are the consequences if a Bluetooth enabled device gets compromised because of this vulnerability?
This may result in information disclosure, elevation of privilege and/or denial of service. For example, Bluetooth headsets or keyboards can have their data captured or changed.

Q3. Can the vulnerability be exploited if only one of the two devices being connected is vulnerable?
No. Both of the devices have to be vulnerable. If one (or both) of the devices is (are) not vulnerable, the attack during the Key Negotiation will fail.

Q4. What is Intel doing to address this Bluetooth® vulnerability?
This is an industry specification issue. Intel is partnering with other members of the Bluetooth Special Interest Group (SIG) to strengthen the Bluetooth Core specification.

Q5. What is the expected mitigation for this vulnerability?
The Bluetooth SIG is working on updating the BT specification to address this issue and the OS and Bluetooth enabled device vendors are already working on mitigations.

Q6. When will these mitigations be ready?
Intel doesn't comment on behalf of third parties, please contact your OS or device vendor. Intel has already made the mitigation for the BlueZ stack publicly available. BlueZ is the official Linux Bluetooth protocol stack and provides support for the core Bluetooth layers and protocols. Support for BlueZ can be found in many Linux distributions and it's generally compatible with any Linux system on the market. Adoption of the BlueZ mitigation in individual Linux distributions may vary.

 

Further details available at:
Intel® Bluetooth® Security – Encryption Key Size Recommendation
Insights on Intel® Developer’s Zone

If you need additional assistance, contact Intel Customer Support by clicking the link below.

Related Products

This article applies to 111 products.
Intel® PRO/Wireless Products Intel® Wi-Fi 6 AX200 (Gig+) Intel® Wi-Fi 6 AX201 (Gig+) Intel® Wireless-AC 9560 Intel® Killer™ Wi-Fi 6E AX1675 (x/w) Intel® Wi-Fi 6 AX203 Xircom® Wireless Adapters Intel® Killer™ Wi-Fi 6E AX1690 (i/s) Wireless Software Intel® Wi-Fi 6 Products Intel® Tri-Band Wireless-AC 17265 Intel® Wireless 7200 Series Legacy Intel® Wireless Products Intel® Wi-Fi 6E AX210 (Gig+) IOT Industrial Kit Intel® Killer™ Performance Suite Intel® Killer™ Wi-Fi 6E AX1675 (i/s) Intel® Wi-Fi 7 Products Intel® Wireless Series Intel® Wi-Fi 6 AX101 Intel® Centrino® Ultimate-N 6300, Dual Band Intel® Killer™ Wi-Fi Series Intel® Dual Band Wireless-N 7265 Intel® Tri-Band Wireless-AC 17000 Series Intel® Wireless Gigabit 11100 VR Intel® Wireless Gateway Series Intel® Wireless-AC 9260 Intel® Tri-Band Wireless-AC 18260 Intel® Killer™ Wi-Fi 7 BE1750 (i/s) Intel® Dual Band Wireless-AC 7265 Intel® Wireless 9000 Series Intel® Killer™ Wi-Fi 6 AX1650 (i/s) Intel® Wi-Fi 7 BE200 Intel® Dual Band Wireless-AC 3168 Intel® Wireless 3100 Series Intel® Wi-Fi 6E AX210 (Gig+) IOT Embedded Kit Intel® Wi-Fi 7 Series Intel® Wi-Fi 6E Products Intel® Killer™ Performance Suite Beta Intel® Dual Band Wireless-AC 3165 Intel® Wireless-N 7265 Intel® Wireless 8000 Series Intel® Wireless-AC 9461 Intel® Killer™ Wi-Fi 6 AX1650 (x/w) Intel® Killer™ Intelligence Center Intel® Wi-Fi 7 BE202 Intel® Wireless Gigabit 11000 Intel® Killer™ Wireless-AC 1550 Intel® Dual Band Wireless-AC 9260 Industrial IoT Kit Intel® PROSet/Wireless Software Intel® Killer™ WiFi AX1650 PCIe card Intel® Wi-Fi 6E (Gig+) Series Intel® Wireless-AC 9462 Legacy Intel® Killer™ Wireless Products Intel® Wi-Fi 6E AX210 (Gig+) Intel® Wi-Fi 6E AX211 (Gig+) Intel® Wireless-AC Products Intel® Killer™ Wi-Fi Products Intel® Killer™ Wi-Fi 6E AX1675 PCIe Card Intel® Tri-Band Wireless-AC 18265 Intel® Wi-Fi 6E AX411 (Gig+) Intel® Killer™ Software Intel® Connectivity Performance Suite Intel® Wireless Gigabit 11000 Series Intel® Wi-Fi 6 Series Intel® Wi-Fi 6 (Gig+) Desktop Kit Intel® Wi-Fi 7 BE201 Intel® Tri-Band Wireless-AC 18000 Series Intel® Killer™ Wi-Fi 7 BE1750 (x/w) Intel® Killer™ Wi-Fi 6 AX500-DBS

Discontinued Products

Intel® Centrino® Wireless-N 2230, Single Band Intel® Centrino® Wireless-N 130, Single Band Intel® Centrino® Advanced-N 6205 for Desktop Intel® My WiFi Dashboard Intel® Wireless Gateway Intel® Dual Band Wireless-AC 7260 Intel® PRO/Wireless 2000 LAN Access Point Intel® Centrino® Wireless-N 1000, Single Band Intel® Dual Band Wireless-AC 3160 Intel® Centrino® Advanced-N 6200, Dual Band Intel® WiFi Link 5300 Intel® Centrino® Wireless-N 135, Single Band Intel® Centrino® Advanced-N 6235, Dual Band Intel® Dual Band Wireless-AC 8260 Intel® PRO/Wireless 2915ABG Network Connection Intel® Centrino® Wireless-N 105, Single Band Intel® Dual Band Wireless-AC 8265 Desktop Kit Intel® WiFi Link 1000 Intel® Centrino® Wireless-N 1000 Intel® Dual Band Wireless-AC 8265 Intel® Centrino® Wireless-N 2200 for Desktop Intel® Centrino® Wireless-N 2200, Single Band Intel® PRO/Wireless 5000 LAN Access Point Intel® WiMAX/WiFi Link 5350 Intel® Dual Band Wireless-AC 7260 for Desktop Intel® WiMAX/WiFi Link 5150 Intel® Centrino® Wireless-N + WiMAX 6150, Single Band Intel® PRO/Wireless 2200BG Network Connection Intel® Wireless-N 7260 Intel® Centrino® Advanced-N 6230, Dual Band Intel® Centrino® Wireless-N 100 Intel® Centrino® Advanced-N 6205, Dual Band Intel® Dual Band Wireless-N 7260 Intel® Wireless WiFi Link 4965AGN Intel® Centrino® Advanced-N + WiMAX 6250, Dual Band Intel® PRO/Wireless 3945ABG Network Connection Intel® Centrino® Advanced-N 6200 Intel® WiFi Link 5100 Intel® Centrino® Ultimate-N 6300 Intel® PRO/Wireless 5000 LAN Dual Access Point Intel® Centrino® Wireless-N 100, Single Band Intel® Centrino® Wireless-N 1030, Single Band