Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2022-40480
Disclosure Date: February 08, 2023 (last updated October 08, 2023)
Nordic Semiconductor, Microchip Technology NRF5340-DK DT100112 was discovered to contain an issue which allows attackers to cause a Denial of Service (DoS) via a crafted ConReq packet.
0
Attacker Value
Unknown
CVE-2022-35624
Disclosure Date: August 15, 2022 (last updated October 08, 2023)
In Nordic nRF5 SDK for Mesh 5.0, a heap overflow vulnerability can be triggered by sending a series of segmented packets with SegO > SegN
0
Attacker Value
Unknown
CVE-2022-35623
Disclosure Date: August 15, 2022 (last updated October 08, 2023)
In Nordic nRF5 SDK for Mesh 5.0, a heap overflow vulnerability can be triggered by sending a series of segmented control packets and access packets with the same SeqAuth
0
Attacker Value
Unknown
CVE-2020-27211
Disclosure Date: May 21, 2021 (last updated February 22, 2025)
Nordic Semiconductor nRF52840 devices through 2020-10-19 have improper protection against physical side channels. The flash read-out protection (APPROTECT) can be bypassed by injecting a fault during the boot phase.
0
Attacker Value
Unknown
CVE-2021-29415
Disclosure Date: May 21, 2021 (last updated February 22, 2025)
The elliptic curve cryptography (ECC) hardware accelerator, part of the ARM® TrustZone® CryptoCell 310, contained in the NordicSemiconductor nRF52840 through 2021-03-29 has a non-constant time ECDSA implemenation. This allows an adversary to recover the private ECC key used during an ECDSA operation.
0
Attacker Value
Unknown
CVE-2020-15509
Disclosure Date: July 07, 2020 (last updated February 21, 2025)
Nordic Semiconductor Android BLE Library through 2.2.1 and DFU Library through 1.10.4 for Android (as used by nRF Connect and other applications) can engage in unencrypted communication while showing the user that the communication is purportedly encrypted. The problem is in bond creation (e.g., internalCreateBond in BleManagerHandler).
0