← Back

Ti

ti

28 CVEs • 59 products

Products (59)

Click to collapse
Toggle
Z Stack
z-stack
Ble Stack
ble-stack
15.4 Stack
15.4-stack
Ble5 Stack
ble5-stack
Easylink
easylink
Openthread
openthread
Cc2640
cc2640
Cc2650
cc2650
Cc2640r2f
cc2640r2f
Cc1350
cc1350
Tm4c123
tm4c123
Tm4c129
tm4c129
Cc256xc Bt Sp
cc256xc-bt-sp
Cc256xb Bt Sp
cc256xb-bt-sp
Wl18xx Bt Sp
wl18xx-bt-sp
Cc2640r2
cc2640r2
Cc2540/1
cc2540/1
Cc2538
cc2538
Cc256xcqfn Em
cc256xcqfn-em
Cc3120
cc3120
Cc3130
cc3130
Cc3135
cc3135
Cc3220r
cc3220r
Cc3220s
cc3220s
Cc3220sf
cc3220sf
Cc3230s
cc3230s
Cc3230sf
cc3230sf
Cc3235s
cc3235s
Cc3235sf
cc3235sf
Cc3100
cc3100
Cc3200
cc3200
Omap L138
omap_l138

CVEs (28)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ti
1Z Stack
Nov 21, 2024
Oct 27, 2020
N/A· v4
8.2 HIGH· v3
6.4 MEDIUM· v2
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Write Attributes No Response message. It crashes in zclParseInWriteCmd() and does not update the s...Show more
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Write Attributes No Response message. It crashes in zclParseInWriteCmd() and does not update the specific attribute's value.Show less
1Ti
1Simplelink Cc2640r2 Software Development Kit
Nov 21, 2024
Aug 31, 2020
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3 allows the Diffie-Hellman check during the Secure Connection pairing to be skipp...Show more
The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3 allows the Diffie-Hellman check during the Secure Connection pairing to be skipped if the Link Layer encryption setup is performed earlier. An attacker in radio range can achieve arbitrary read/write access to protected GATT service data, cause a denial of service, or possibly control a device's function by establishing an encrypted session with an unauthenticated Long Term Key (LTK).Show less
1Ti
2Ble Stack
Cc2640r2 Software Development Kit
Nov 21, 2024
Feb 10, 2020
N/A· v4
6.5 MEDIUM· v3
6.1 MEDIUM· v2
The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5.0 before Q4 2019 for CC2640R2 and CC2540/1 devices does not properly restrict t...Show more
The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5.0 before Q4 2019 for CC2640R2 and CC2540/1 devices does not properly restrict the advertisement connection request packet on reception, allowing attackers in radio range to cause a denial of service (crash) via a crafted packet.Show less
1Ti
1Cc2640r2 Software Development Kit
Nov 21, 2024
Feb 10, 2020
N/A· v4
6.5 MEDIUM· v3
6.1 MEDIUM· v2
The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio range to cause a deni...Show more
The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio range to cause a denial of service (crash) via crafted packets.Show less
1Ti
3Cc256xb Bt Sp Firmware
Cc256xc Bt Sp FirmwareWl18xx Bt Sp Firmware
Nov 21, 2024
Nov 13, 2019
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a buffer overflow via a malformed Bluetooth Low Energy advertising packet, to cause...Show more
Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a buffer overflow via a malformed Bluetooth Low Energy advertising packet, to cause a denial of service or potentially execute arbitrary code. This affects CC256xC-BT-SP 1.2, CC256xB-BT-SP 1.8, and WL18xx-BT-SP 4.4.Show less
1Ti
2Tm4c123 Firmware
Tm4c129 Firmware
Nov 21, 2024
Aug 20, 2019
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series. The eXecute-Only-Memory (XOM) implementation prevents code read-outs on protected memory by generating bus faults. H...Show more
An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series. The eXecute-Only-Memory (XOM) implementation prevents code read-outs on protected memory by generating bus faults. However, single-stepping and using breakpoints is allowed in XOM-protected flash memory. As a consequence, it is possible to execute single instructions with arbitrary system states (e.g., registers, status flags, and SRAM content) and observe the state changes produced by the unknown instruction. An attacker could exploit this vulnerability by executing protected and unknown instructions with specific system states and observing the state changes. Based on the gathered information, it is possible to reverse-engineer the executed instructions. The processor acts as a kind of "instruction oracle."Show less
1Ti
1Ble Stack
Nov 21, 2024
Nov 6, 2018
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malformed packet that triggers a buffer overflow.
3Apple
GoogleTi
4Android
Iphone OsMac Os X+1 more
Mar 5, 2026
Aug 7, 2018
N/A· v4
6.8 MEDIUM· v3
4.3 MEDIUM· v2
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic cu...Show more
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.Show less