ZeroHour

CVE-2019-19192

PoC
CVSS 3.1
6.5 medium
EPSS
1%p62
Published
()
Modified
Description

The Bluetooth Low Energy implementation on STMicroelectronics BLE Stack through 1.3.1 for STM32WB5x devices does not properly handle consecutive Attribute Protocol (ATT) requests on reception, allowing attackers in radio range to cause an event deadlock or crash via crafted packets.

Vendors
st
Products
wb55, bluenrg-2
Weakness
CWE-20
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news