Page 3 of 34 results (0.001 seconds)

CVSS: 5.3EPSS: 8%CPEs: 1EXPL: 0

23 Jan 2021 — jxbrowser in TI Code Composer Studio IDE 8.x through 10.x before 10.1.1 does not verify X.509 certificates for HTTPS. jxbrowser en TI Code Composer Studio IDE versiones 8.x hasta versiones 10.x anteriores a 10.1.1, no comprueba los certificados X.509 para HTTPS • https://sir.ext.ti.com/jira/browse/EXT_EP-10212 • CWE-295: Improper Certificate Validation •

CVSS: 8.2EPSS: 0%CPEs: 2EXPL: 0

27 Oct 2020 — The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Write Attributes No Response message. It crashes in zclParseInWriteCmd() and does not update the specific attribute's value. La implementación del protocolo Zigbee en dispositivos CC2538 de Texas Instruments con Z-Stack versión 3.0.1, no procesa apropiadamente un mensaje ZCL Write Attributes No Response. Se bloquea en la función zclParseInWriteCmd() y no actualiza el valor del atrib... • https://github.com/zigbeeprotocol/Z-Fuzzer/tree/master/vulnerabilities •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

27 Oct 2020 — The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Read Reporting Configuration Response message. It crashes in zclHandleExternal(). La implementación del protocolo Zigbee en los dispositivos CC2538 de Texas Instruments con Z-Stack versión 3.0.1, no procesa apropiadamente un mensaje ZCL Read Reporting Configuration Response. Se bloquea en la función zclHandleExternal() • https://github.com/zigbeeprotocol/Z-Fuzzer/tree/master/vulnerabilities •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

27 Oct 2020 — The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Discover Commands Received Response message or a ZCL Discover Commands Generated Response message. It crashes in zclParseInDiscCmdsRspCmd(). La implementación del protocolo Zigbee en los dispositivos CC2538 de Texas Instruments con Z-Stack versión 3.0.1, no procesa apropiadamente un mensaje ZCL Discover Commands Received Response o un mensaje ZCL Discover Commands Generated Response. ... • https://github.com/zigbeeprotocol/Z-Fuzzer/tree/master/vulnerabilities •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

31 Aug 2020 — The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3 allows the Diffie-Hellman check during the Secure Connection pairing to be skipped if the Link Layer encryption setup is performed earlier. An attacker in radio range can achieve arbitrary read/write access to protected GATT service data, cause a denial of service, or possibly control a device's function by establishing an encrypted session with an unauthenticated Long ... • http://www.ti.com/tool/BLE-STACK • CWE-347: Improper Verification of Cryptographic Signature •

CVSS: 6.5EPSS: 0%CPEs: 4EXPL: 0

10 Feb 2020 — The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5.0 before Q4 2019 for CC2640R2 and CC2540/1 devices does not properly restrict the advertisement connection request packet on reception, allowing attackers in radio range to cause a denial of service (crash) via a crafted packet. La implementación periférica de Bluetooth Low Energy en Texas Instruments SIMPLELINK-CC2640R2-SDK versiones hasta 3.30.00.20 y BLE-STACK versi... • http://www.ti.com/tool/BLE-STACK •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 1

10 Feb 2020 — The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio range to cause a denial of service (crash) via crafted packets. La implementación de Bluetooth Low Energy en el SDK de Texas Instruments versiones hasta el 3.30.00.20 para dispositivos CC2640R2, no restringe apropiadamente el paquete SM Public Key en la recepción, permitiendo a atacantes dentro del radio de alca... • http://www.ti.com/tool/LAUNCHXL-CC2640R2 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 8.8EPSS: 8%CPEs: 6EXPL: 0

13 Nov 2019 — Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a buffer overflow via a malformed Bluetooth Low Energy advertising packet, to cause a denial of service or potentially execute arbitrary code. This affects CC256xC-BT-SP 1.2, CC256xB-BT-SP 1.8, and WL18xx-BT-SP 4.4. Los dispositivos controladores de Bluetooth modo dual Texas Instruments CC256x y WL18xx, cuando se utiliza el modo de escaneo LE, permiten a atacantes remotos ... • https://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/856161 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 4.6EPSS: 0%CPEs: 4EXPL: 0

20 Aug 2019 — An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series. The eXecute-Only-Memory (XOM) implementation prevents code read-outs on protected memory by generating bus faults. However, single-stepping and using breakpoints is allowed in XOM-protected flash memory. As a consequence, it is possible to execute single instructions with arbitrary system states (e.g., registers, status flags, and SRAM content) and observe the state changes produced by the unknown instruc... • https://www.usenix.org/conference/woot19/presentation/schink • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 8.8EPSS: 5%CPEs: 7EXPL: 0

06 Nov 2018 — Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malformed packet that triggers a buffer overflow. Texas Instruments BLE-STACK v2.2.1 para dispositivos SimpleLink CC2640 y CC2650 provoca que atacantes remotos ejecuten código arbitrario mediante un paquete mal formado que desencadena un desbordamiento de búfer. • http://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/742827 • CWE-787: Out-of-bounds Write •