CVE-2024-43763
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 203
Summary
CVE-2024-43763 is a newly disclosed vulnerability affecting the Bluetooth Low Energy (BLE) protocol implementation in gatt_sr.cc. The issue resides in the 'build_read_multi_rsp' function, where a logic error can be exploited for remote denial of service attacks. No additional execution privileges or user interaction are required for an attacker to cause the crash. This vulnerability could potentially impact devices that rely on BLE for communication and could lead to proximal or adjacent denial of service attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Android