Vulnerability Details CVE-2019-16336
The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 66.3%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 3.3
Products affected by CVE-2019-16336
-
cpe:2.3:a:cypress:cybl11573:-
-
cpe:2.3:a:cypress:cybl11573:3.61
-
cpe:2.3:a:cypress:cyble-416045:-
-
cpe:2.3:a:cypress:cyble-416045:2.10
-
cpe:2.3:h:cypress:cybl11573:-
-
cpe:2.3:h:cypress:cyble-416045:-