PT-2022-27854 · Microchip · Microchip Rn4870 Module Firmware+1

Published

2022-12-19

·

Updated

2022-12-27

·

CVE-2022-46402

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Microchip RN4870 module firmware version 1.43 Microchip PIC LightBlue Explorer Demo version 4.2 DT100112
Description The issue concerns the acceptance of PairCon rmSend with incorrect values. This affects the Microchip RN4870 module firmware and the Microchip PIC LightBlue Explorer Demo. No information is provided about the estimated number of potentially affected devices or real-world incidents.
Recommendations For Microchip RN4870 module firmware version 1.43, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Microchip PIC LightBlue Explorer Demo version 4.2 DT100112, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2022-46402

Affected Products

Microchip Pic Lightblue Explorer Demo
Microchip Rn4870 Module Firmware