CVE-2018-19860

Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not properly restrict LMP commnds and executes certain memory contents upon receiving an LMP command, as demonstrated by executing an HCI command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
VendorProductVersion
cypresscyw20702a1kwfbg_firmware
-
cypresscyw20702a1kwfbgt_firmware
-
cypresscyw20702b0kwfbg_firmware
-
cypresscyw20702b0kwfbgt_firmware
-
cypresscyw20703ua1kffb1g_firmware
-
cypresscyw20703ua1kffb1gt_firmware
-
cypresscyw20704ua1kffb1g_firmware
-
cypresscyw20704ua1kffb1gt_firmware
-
cypresscyw20704ua2kffb1g_firmware
-
cypresscyw20704ua2kffb1gt_firmware
-
cypresscyw20705a1kwfbgt_firmware
-
cypresscyw20705b0kwfbg_firmware
-
cypresscyw20705b0kwfbgt_firmware
-
cypresscyw20706ua1kffb1g_firmware
-
cypresscyw20706ua1kffb1gt_firmware
-
cypresscyw20706ua1kffb4g_firmware
-
cypresscyw20706ua2kffb4g_firmware
-
cypresscyw20706ua2kffb4gt_firmware
-
cypresscyw20707a2kubgt_firmware
-
cypresscyw20707ua1kffb1g_firmware
-
cypresscyw20707ua1kffb4g_firmware
-
cypresscyw20707ua1kffb4gt_firmware
-
cypresscyw20707ua2kffb4g_firmware
-
cypresscyw20707ua2kffb4gt_firmware
-
cypresscyw20707va1pkwbgt_firmware
-
cypresscyw20707va2pkwbgt_firmware
-
cypresscyw20730a1kfbg_firmware
-
cypresscyw20730a1kfbgt_firmware
-
cypresscyw20730a1kml2g_firmware
-
cypresscyw20730a1kml2gt_firmware
-
cypresscyw20730a1kmlg_firmware
-
cypresscyw20730a1kmlgt_firmware
-
cypresscyw20730a2kfbg_firmware
-
cypresscyw20730a2kfbgt_firmware
-
cypresscyw20730a2kml2g_firmware
-
cypresscyw20730a2kml2gt_firmware
-
cypresscyw20733a1kfb1gt_firmware
-
cypresscyw20733a2kfb1g_firmware
-
cypresscyw20733a2kfb1gt_firmware
-
cypresscyw20733a2kml1g_firmware
-
cypresscyw20733a2kml1gt_firmware
-
cypresscyw20733a3kfb1g_firmware
-
cypresscyw20733a3kfb1gt_firmware
-
cypresscyw20733a3kfb2gt_firmware
-
cypresscyw20733a3kml1g_firmware
-
cypresscyw20733a3kml1gt_firmware
-
cypresscyw20734ua1kffb3g_firmware
-
cypresscyw20734ua1kffb3gt_firmware
-
cypresscyw20734ua2kffb3g_firmware
-
cypresscyw20734ua2kffb3gt_firmware
-
cypresscyw43438kubgt_firmware
-
cypresscyw4343w1kubgt_firmware
-
cypresscyw4343wkubgt_firmware
-
cypresscyw4343wkwbgt_firmware
-
cypresscyw4354kkwbgt_firmware
-
cypresscyw4354xkubgt_firmware
-
cypresscyw89071a1cubxgt_firmware
-
cypresscyw89072brfb5g_firmware
-
cypresscyw89072brfb5gt_firmware
-
cypresscyw89335l2cubgt_firmware
-
cypresscyw89335lcubgt_firmware
-
𝑥
= Vulnerable software versions