The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.
2020-02-12T18:15:10.393
2024-11-21T04:30:32.823
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:A/AC:L/Au:N/C:N/I:N/A:P
6.5
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cypress | cyble-416045 | ≤ 2.10 | Yes |
Hardware | cypress | cyble-416045 | - | No |
Application | cypress | cybl11573 | ≤ 3.61 | Yes |
Hardware | cypress | cybl11573 | - | No |