CVE-2022-45191: Medium severity microchip rn4870 firmware vulnerability
Published Feb 7, 2023
·Updated
An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can cause a denial of service by sending a pair confirm message with wrong values.
Affected Software
4 affected components
Microchip Rn4870 Firmware=1.43
Microchip RN4870
All of the following
Microchip Rn4870 Firmware=1.43
Microchip RN4870
Event History
Feb 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Feb 8, 2023
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-45191.
2
What is the severity of CVE-2022-45191?
The severity of CVE-2022-45191 is medium with a CVSS score of 6.5.
3
What is the affected software?
The affected software is Microchip RN4870 firmware version 1.43.
4
How can an attacker exploit this vulnerability?
An attacker within BLE radio range can cause a denial of service by sending a pair confirm message with wrong values.
5
Is Microchip RN4870 hardware vulnerable?
No, Microchip RN4870 hardware is not vulnerable to CVE-2022-45191.