Check: WIR1040-02
BlackBerry Handheld Device:
WIR1040-02
(in versions v2 r11 through v2 r8)
Title
BlackBerry Bluetooth SCR use with site PCs must be compliant with requirements. (Cat III impact)
Discussion
Insecure Bluetooth configuration on the PC could make it vulnerable to compromise via a Bluetooth attack.
Check Content
Detailed Policy Requirements: When the BlackBerry Bluetooth Smart Card Reader (SCR) is used as a PC SCR, the following requirements must be followed: The AO must approve the use of a Bluetooth smart card reader with command/site PCs. Check Procedures: Interview the ISSO and wireless email system administrator. Determine if use of the BlackBerry SCR with site PCs has been approved. If Yes, verify the following requirements are met: The AO has approved the use of the BlackBerry SCR with site PCs. Have the ISSO provide documentation showing AO approval (letter, memo, SSP, etc.).
Fix Text
BlackBerry Bluetooth SCR use with site PCs must be compliant with requirements.
Additional Identifiers
Rule ID: SV-12366r3_rule
Vulnerability ID: V-11866
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |