SWRA803 February   2020 CC2540 , CC2541

 

  1.   1
  2. 1Summary
  3. 2Vulnerability
  4. 3Revision History

Vulnerability

TI PSIRT ID

TI-PSIRT-2019-060025

CVSS Base Score

8.1

Affected Products

CC2540/CC2541 BLE-Stack SDK v1.5.0 and earlier

Potentially Impacted Features

The potential vulnerability can impact the OAD image encryption functionality.

Suggested Mitigations

The following service-pack release addresses the potential vulnerability:

Customers of affected products should apply this service-pack and consider further system-level security measures as appropriate. Customers are solely responsible for the security of their products and are encouraged to assess the possible risk of any potential security vulnerability.

Acknowledgments

We would like to thank researchers from COSIC, KU Leuven and imec for reporting this potential vulnerability to the TI Product Security Incident Response Team (PSIRT) and working toward a coordinated report.

External References

Texas Instruments, Bluetooth Low Energy software stack