CVE-2025-10457
EUVD-2025-3023619.09.2025, 06:15
The function responsible for handling BLE connection responses does not verify whether a response is expected—that is, whether the device has initiated a connection request. Instead, it relies solely on identifier matching.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zephyrproject | zephyr | 𝑥 ≤ 4.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration