CVE-2020-10368

Certain Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow memory read access via a "Spectra" attack.
Configurations

No configuration.

History

26 Nov 2024, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.5
CWE CWE-922

12 Nov 2024, 13:55

Type Values Removed Values Added
Summary
  • (es) Ciertos chips Cypress (y Broadcom) Wireless Combo, cuando no hay una actualización de firmware de enero de 2021, permiten el acceso de lectura de memoria a través de un ataque "Spectra".

11 Nov 2024, 00:15

Type Values Removed Values Added
References
  • () https://github.com/RPi-Distro/bluez-firmware/commit/8445a53ce2c51a77472b908a0c8f6f8e1fa5c37a -
  • () https://www.informatik.tu-darmstadt.de/fb20/aktuelles_fb20/fb20_neuigkeiten/neuigkeiten_fb20_details_203136.de.jsp -
Summary (en) Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow memory read access via a "Spectra" attack. (en) Certain Cypress (and Broadcom) Wireless Combo chips, when a January 2021 firmware update is not present, allow memory read access via a "Spectra" attack.

10 Nov 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-10 23:15

Updated : 2024-11-26 18:15


NVD link : CVE-2020-10368

Mitre link : CVE-2020-10368

CVE.ORG link : CVE-2020-10368


JSON object : View

Products Affected

No product.

CWE
CWE-922

Insecure Storage of Sensitive Information