A state machine transition flaw in the Bluetooth Low...
High severity
Unreviewed
Published
Jun 27, 2025
to the GitHub Advisory Database
•
Updated Jul 2, 2025
Description
Published by the National Vulnerability Database
Jun 27, 2025
Published to the GitHub Advisory Database
Jun 27, 2025
Last updated
Jul 2, 2025
A state machine transition flaw in the Bluetooth Low Energy (BLE) stack of Cypress PSoC4 v3.66 allows attackers to bypass the pairing process and authentication via a crafted pairing_failed packet.
References