CVE-2017-16867

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/11/2017
Last modified:
20/04/2025

Description

Amazon Key through 2017-11-16 mishandles Cloud Cam 802.11 deauthentication frames during the delivery process, which makes it easier for (1) delivery drivers to freeze a camera and re-enter a house for unfilmed activities or (2) attackers to freeze a camera and enter a house if a delivery driver failed to ensure a locked door before leaving.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amazon:amazon_key_firmware:*:*:*:*:*:*:*:* 2017-11-16 (including)
cpe:2.3:h:amazon:amazon_key:-:*:*:*:*:*:*:*