Back to Database
Status published
High
CVE-2018-16986
Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices...
Vulnerability Description
Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malformed packet that triggers a buffer overflow.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-16986
Credits & Attribution
No credits recorded in the NVD database.
References
- https://armis.com/bleedingbit/
- http://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/742827
- http://www.securitytracker.com/id/1042018
- https://www.kb.cert.org/vuls/id/317277
- http://www.securityfocus.com/bid/105812
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181101-ap
More from ti
View All →CVE-2021-3285
jxbrowser in TI Code Composer Studio IDE 8.x through 10.x...
Medium
5.3
CVE-2021-34149
The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does...
Medium
6.5
CVE-2020-27892
The Zigbee protocol implementation on Texas Instruments CC2538 devices with...
High
7.5
CVE-2020-27891
The Zigbee protocol implementation on Texas Instruments CC2538 devices with...
High
7.5
CVE-2020-27890
The Zigbee protocol implementation on Texas Instruments CC2538 devices with...
High
8.2
Affected Vendor
Affected Software
ble-stack
Vulnerable Versions:
0, 3.0.0
Timeline
Official Publish:
November 6th, 2018
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.