First published: Wed Jul 03 2024(Updated: )
A malicious BLE device can send a specific order of packet sequence to cause a DoS attack on the victim BLE device
Credit: vulnerabilities@zephyrproject.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zephyr Project Manager | <=3.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-3332 is classified as a denial-of-service (DoS) vulnerability affecting Bluetooth Low Energy (BLE) devices.
CVE-2024-3332 allows a malicious BLE device to send a specific sequence of packets that can disrupt the normal operation of the affected BLE device.
CVE-2024-3332 impacts all versions of Zephyr up to and including 3.6.0.
To mitigate CVE-2024-3332, update your Zephyr Project software to a version newer than 3.6.0 that addresses this vulnerability.
The potential impact of CVE-2024-3332 is a denial-of-service condition that can render the affected BLE device inoperable.