Ti
ti
28 CVEs • 59 products
Products (59)
Click to collapseToggle
Products (59)
Click to collapse
CVEs (28)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An issue in Texas Instruments Fusion Digital Power Designer v.7.10.1 allows a local attacker to obtain sensitive information via the plaintext storage of credentials |
2Amazon Ti6Freertos Simplelink Cc13xx Software Development KitSimplelink Cc26xx Software Development Kit+3 moreNov 21, 2024 Nov 21, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Texas Instruments devices running FREERTOS, malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'malloc' for FreeRTOS, resulting in code e...Show more |
1Ti 6Real Time Operating System Simplelink Cc13xx Software Development KitSimplelink Cc26xx Software Development Kit+3 moreNov 21, 2024 Nov 21, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'HeapMem_allo...Show more |
1Ti 6Real Time Operating System Simplelink Cc13xx Software Development KitSimplelink Cc26xx Software Development Kit+3 moreNov 21, 2024 Nov 20, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2
Texas Instruments TI-RTOS returns a valid pointer to a small buffer on extremely large values. This can trigger an integer overflow vulnerability in 'HeapTrack_alloc' and result in code execution.
|
1Ti 6Real Time Operating System Simplelink Cc13xx Software Development KitSimplelink Cc26xx Software Development Kit+3 moreNov 21, 2024 Nov 20, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'HeapMem_...Show more |
The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signature size field in the SK_LOAD module loading routine, present in mask ROM. A module with a sufficien...Show more |
The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) performs an RSA check implemented in mask ROM when loading a module through the SK_LOAD routine. However, only the module header authe...Show more |
The AES implementation in the Texas Instruments OMAP L138 (secure variants), present in mask ROM, suffers from a timing side channel which can be exploited by an adversary with non-secure supervisor privileges by managin...Show more |
The Texas Instruments (TI) WiLink WL18xx MCP driver does not limit the number of information elements (IEs) of type XCC_EXT_1_IE_ID or XCC_EXT_2_IE_ID that can be parsed in a management frame. Using a specially crafted f...Show more |
1Ti 3Cc3100 Firmware Cc3200 FirmwareSimplelink Cc32xx Software Development KitNov 21, 2024 Feb 16, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an uninitialized read....Show more |
1Ti 715.4 Stack Ble5 StackDynamic Multi Protocal Manager+4 moreNov 21, 2024 Sep 20, 2021 N/A· v4 6.8 MEDIUM· v3 4.3 MEDIUM· v2 TI’s BLE stack caches and reuses the LTK’s property for a bonded mobile. A LTK can be an unauthenticated-and-no-MITM-protection key created by Just Works or an authenticated-and-MITM-protection key created by Passkey Ent...Show more |
The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does not properly handle the reception of continuous LMP_AU_Rand packets, allowing attackers in radio range to trigger a denial of service (dead...Show more |
1Ti 7Cc3100 Software Development Kit Cc3200 Software Development KitSimplelink Cc13x0 Software Development Kit+4 moreNov 21, 2024 May 7, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such as a denial-of-service condition or code execution on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00....Show more |
1Ti 7Cc3100 Software Development Kit Cc3200 Software Development KitSimplelink Cc13x0 Software Development Kit+4 moreNov 21, 2024 May 7, 2021 N/A· v4 8.0 HIGH· v3 6.0 MEDIUM· v2 The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4...Show more |
1Ti 7Cc3100 Software Development Kit Cc3200 Software Development KitSimplelink Cc13x0 Software Development Kit+4 moreNov 21, 2024 May 7, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and pri...Show more |
1Ti 7Cc3100 Software Development Kit Cc3200 Software Development KitSimplelink Cc13x0 Software Development Kit+4 moreNov 21, 2024 May 7, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30...Show more |
1Ti 7Cc3100 Software Development Kit Cc3200 Software Development KitSimplelink Cc13x0 Software Development Kit+4 moreNov 21, 2024 May 7, 2021 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which may allow an attacker to remotely execute code on SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and p...Show more |
1Ti 1Code Composer Studio Intgrated Development Environment Nov 21, 2024 Jan 26, 2021 N/A· v4 5.3 MEDIUM· v3 4.3 MEDIUM· v2 jxbrowser in TI Code Composer Studio IDE 8.x through 10.x before 10.1.1 does not verify X.509 certificates for HTTPS. |
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Discover Commands Received Response message or a ZCL Discover Commands Generated Response message....Show more |
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Read Reporting Configuration Response message. It crashes in zclHandleExternal(). |