CVE-2025-44525: Medium severity Texas Instruments CC2652RB LaunchPad SimpleLink vulnerability
Texas Instruments CC2652RB LaunchPad SimpleLink CC13XX CC26XX SDK 7.41.00.17 was discovered to utilize insufficient permission checks on critical fields within Bluetooth Low Energy (BLE) data packets. This issue allows attackers to cause a Denial of Service (DoS) via a crafted LLLengthReq packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-44525?
CVE-2025-44525 has a high severity rating due to its potential to cause Denial of Service (DoS) attacks.
How does CVE-2025-44525 affect Texas Instruments CC2652RB LaunchPad SimpleLink?
CVE-2025-44525 affects Texas Instruments CC2652RB LaunchPad SimpleLink by exploiting insufficient permission checks in BLE data packets.
What type of attack is possible with CVE-2025-44525?
CVE-2025-44525 allows attackers to execute Denial of Service (DoS) attacks using a malicious LL_Length_Req packet.
How can I mitigate the risks associated with CVE-2025-44525?
To mitigate CVE-2025-44525, ensure you apply the latest security patches provided by Texas Instruments to the affected software.
Is there a workaround for CVE-2025-44525?
While there is no official workaround for CVE-2025-44525, limiting access to the BLE service can help reduce exposure.