ID

VAR-201911-1302


CVE

CVE-2019-15948


TITLE

Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller Classic buffer overflow vulnerability in devices

Trust: 0.8

sources: JVNDB: JVNDB-2019-012160

DESCRIPTION

Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a buffer overflow via a malformed Bluetooth Low Energy advertising packet, to cause a denial of service or potentially execute arbitrary code. This affects CC256xC-BT-SP 1.2, CC256xB-BT-SP 1.8, and WL18xx-BT-SP 4.4

Trust: 1.62

sources: NVD: CVE-2019-15948 // JVNDB: JVNDB-2019-012160

IOT TAXONOMY

category:['network device']sub_category:bluetooth device

Trust: 0.1

sources: OTHER: None

AFFECTED PRODUCTS

vendor:timodel:cc256xc-bt-spscope:lteversion:1.2

Trust: 1.0

vendor:timodel:wl18xx-bt-spscope:lteversion:4.4

Trust: 1.0

vendor:timodel:cc256xb-bt-spscope:lteversion:1.8

Trust: 1.0

vendor:texas instruments incorporated timodel:cc256xb-bt-spscope:eqversion:1.2

Trust: 0.8

vendor:texas instruments incorporated timodel:cc256xc-bt-spscope:eqversion:1.8

Trust: 0.8

vendor:texas instruments incorporated timodel:wl18xx-bt-spscope:eqversion:4.4

Trust: 0.8

sources: JVNDB: JVNDB-2019-012160 // NVD: CVE-2019-15948

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2019-15948
value: HIGH

Trust: 1.0

NVD: CVE-2019-15948
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201911-736
value: HIGH

Trust: 0.6

nvd@nist.gov: CVE-2019-15948
severity: MEDIUM
baseScore: 5.8
vectorString: AV:A/AC:L/AU:N/C:P/I:P/A:P
accessVector: ADJACENT_NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 6.5
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

nvd@nist.gov: CVE-2019-15948
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2019-15948
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2019-012160 // CNNVD: CNNVD-201911-736 // NVD: CVE-2019-15948

PROBLEMTYPE DATA

problemtype:CWE-120

Trust: 1.8

sources: JVNDB: JVNDB-2019-012160 // NVD: CVE-2019-15948

THREAT TYPE

remote or local

Trust: 0.6

sources: CNNVD: CNNVD-201911-736

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-201911-736

CONFIGURATIONS

sources: JVNDB: JVNDB-2019-012160

PATCH

title:Part Number: CC2564Curl:https://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/856161

Trust: 0.8

title:Texas Instruments CC256xC-BT-SP , CC256xB-BT-SP and WL18xx-BT-SP Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=105208

Trust: 0.6

sources: JVNDB: JVNDB-2019-012160 // CNNVD: CNNVD-201911-736

EXTERNAL IDS

db:NVDid:CVE-2019-15948

Trust: 2.5

db:JVNDBid:JVNDB-2019-012160

Trust: 0.8

db:CNNVDid:CNNVD-201911-736

Trust: 0.6

db:OTHERid:NONE

Trust: 0.1

sources: OTHER: None // JVNDB: JVNDB-2019-012160 // CNNVD: CNNVD-201911-736 // NVD: CVE-2019-15948

REFERENCES

url:https://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/856161

Trust: 1.6

url:https://www.youtube.com/watch?v=bk5loxieqba

Trust: 1.6

url:https://github.com/darkmentorllc/jackbnimble/blob/master/host/pocs/ti_wl18xx_adv_rce.py

Trust: 1.6

url:https://github.com/darkmentorllc/publications/tree/master/2020/ti_silabs_ble_rces

Trust: 1.6

url:https://www.linkedin.com/in/veronica-kovah-2587185

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2019-15948

Trust: 1.4

url:https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2019-15948

Trust: 0.8

url:https://ieeexplore.ieee.org/abstract/document/10769424

Trust: 0.1

sources: OTHER: None // JVNDB: JVNDB-2019-012160 // CNNVD: CNNVD-201911-736 // NVD: CVE-2019-15948

SOURCES

db:OTHERid: -
db:JVNDBid:JVNDB-2019-012160
db:CNNVDid:CNNVD-201911-736
db:NVDid:CVE-2019-15948

LAST UPDATE DATE

2025-01-30T20:48:53.297000+00:00


SOURCES UPDATE DATE

db:JVNDBid:JVNDB-2019-012160date:2019-11-26T00:00:00
db:CNNVDid:CNNVD-201911-736date:2020-08-19T00:00:00
db:NVDid:CVE-2019-15948date:2024-11-21T04:29:48.073

SOURCES RELEASE DATE

db:JVNDBid:JVNDB-2019-012160date:2019-11-26T00:00:00
db:CNNVDid:CNNVD-201911-736date:2019-11-13T00:00:00
db:NVDid:CVE-2019-15948date:2019-11-13T16:15:11.050