Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-16336

Опубликовано: 12 фев. 2020
Источник: nvd
CVSS3: 6.5
CVSS2: 3.3
EPSS Низкий

Описание

The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:cypress:cyble-416045:*:*:*:*:*:*:*:*
Версия до 2.10 (включая)
cpe:2.3:h:cypress:cyble-416045:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:a:cypress:cybl11573:*:*:*:*:*:*:*:*
Версия до 3.61 (включая)
cpe:2.3:h:cypress:cybl11573:-:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00531
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-120

Связанные уязвимости

github
больше 3 лет назад

The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.

EPSS

Процентиль: 67%
0.00531
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-120