CVE-2018-19860

EUVD-2018-11534
Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not properly restrict LMP commnds and executes certain memory contents upon receiving an LMP command, as demonstrated by executing an HCI command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 69%
Affected Products (NVD)
VendorProductVersion
cypresscyw20702a1kwfbg_firmware
-
cypresscyw20702a1kwfbgt_firmware
-
cypresscyw20702b0kwfbg_firmware
-
cypresscyw20702b0kwfbgt_firmware
-
cypresscyw20703ua1kffb1g_firmware
-
cypresscyw20703ua1kffb1gt_firmware
-
cypresscyw20704ua1kffb1g_firmware
-
cypresscyw20704ua1kffb1gt_firmware
-
cypresscyw20704ua2kffb1g_firmware
-
cypresscyw20704ua2kffb1gt_firmware
-
cypresscyw20705a1kwfbgt_firmware
-
cypresscyw20705b0kwfbg_firmware
-
cypresscyw20705b0kwfbgt_firmware
-
cypresscyw20706ua1kffb1g_firmware
-
cypresscyw20706ua1kffb1gt_firmware
-
cypresscyw20706ua1kffb4g_firmware
-
cypresscyw20706ua2kffb4g_firmware
-
cypresscyw20706ua2kffb4gt_firmware
-
cypresscyw20707a2kubgt_firmware
-
cypresscyw20707ua1kffb1g_firmware
-
cypresscyw20707ua1kffb4g_firmware
-
cypresscyw20707ua1kffb4gt_firmware
-
cypresscyw20707ua2kffb4g_firmware
-
cypresscyw20707ua2kffb4gt_firmware
-
cypresscyw20707va1pkwbgt_firmware
-
cypresscyw20707va2pkwbgt_firmware
-
cypresscyw20730a1kfbg_firmware
-
cypresscyw20730a1kfbgt_firmware
-
cypresscyw20730a1kml2g_firmware
-
cypresscyw20730a1kml2gt_firmware
-
cypresscyw20730a1kmlg_firmware
-
cypresscyw20730a1kmlgt_firmware
-
cypresscyw20730a2kfbg_firmware
-
cypresscyw20730a2kfbgt_firmware
-
cypresscyw20730a2kml2g_firmware
-
cypresscyw20730a2kml2gt_firmware
-
cypresscyw20733a1kfb1gt_firmware
-
cypresscyw20733a2kfb1g_firmware
-
cypresscyw20733a2kfb1gt_firmware
-
cypresscyw20733a2kml1g_firmware
-
cypresscyw20733a2kml1gt_firmware
-
cypresscyw20733a3kfb1g_firmware
-
cypresscyw20733a3kfb1gt_firmware
-
cypresscyw20733a3kfb2gt_firmware
-
cypresscyw20733a3kml1g_firmware
-
cypresscyw20733a3kml1gt_firmware
-
cypresscyw20734ua1kffb3g_firmware
-
cypresscyw20734ua1kffb3gt_firmware
-
cypresscyw20734ua2kffb3g_firmware
-
cypresscyw20734ua2kffb3gt_firmware
-
cypresscyw43438kubgt_firmware
-
cypresscyw4343w1kubgt_firmware
-
cypresscyw4343wkubgt_firmware
-
cypresscyw4343wkwbgt_firmware
-
cypresscyw4354kkwbgt_firmware
-
cypresscyw4354xkubgt_firmware
-
cypresscyw89071a1cubxgt_firmware
-
cypresscyw89072brfb5g_firmware
-
cypresscyw89072brfb5gt_firmware
-
cypresscyw89335l2cubgt_firmware
-
cypresscyw89335lcubgt_firmware
-
𝑥
= Vulnerable software versions