Skip to main content

Vendor/product archive

apache / nimble CVEs

Beta · best-effort

15 CVEs tagged to apache / nimble0 Critical, 9 High, 5 Medium, 1 Low, 0 Unrated.

CVE-2026-46452

Published Jul 24, 2026

Improper Input Validation vulnerability in Apache NimBLE in Mesh Proxy SAR reassembly could result in passing broken data toward application resulting in memory pressure and unsta…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-45816

Published Jul 24, 2026

NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event. This requires disabled asserts (otherwise assert would trigger before NULL dereference)…

CVSS 7.5 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-45815

Published Jul 24, 2026

Reachable Assertion vulnerability in Apache NimBLE. A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser. Sever…

CVSS 7.5 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-45813

Published Jul 24, 2026

Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apache NimBLE BASS service. Improper validation when parsing BASS service  "Add Source" and "Modify So…

CVSS 8.8 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-45812

Published Jul 24, 2026

Incorrect Calculation of Buffer Size vulnerability in Apache NimBLE when processing Legacy Advertising Report HCI event. When a single HCI advertising report event bundles multip…

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-45811

Published Jul 24, 2026

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE. The HCI socket transport did not check whether a received HCI event would fi…

CVSS 7.5 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-62235

Published Jan 10, 2026

Authentication Bypass by Spoofing vulnerability in Apache NimBLE. Receiving specially crafted Security Request could lead to removal of original bond and re-bond with impostor. T…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-53477

Published Jan 10, 2026

NULL Pointer Dereference vulnerability in Apache Nimble. Missing validation of HCI connection complete or HCI command TX buffer could lead to NULL pointer dereference. This issue…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-53470

Published Jan 10, 2026

Out-of-bounds Read vulnerability in Apache NimBLE HCI H4 driver. Specially crafted HCI event could lead to invalid memory read in H4 driver. This issue affects Apache NimBLE: th…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-52435

Published Jan 10, 2026

J2EE Misconfiguration: Data Transmission Without Encryption vulnerability in Apache NimBLE. Improper handling of Pause Encryption procedure on Link Layer results in a previously…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-51569

Published Nov 26, 2024

Out-of-bounds Read vulnerability in Apache NimBLE. Missing proper validation of HCI Number Of Completed Packets could lead to out-of-bound access when parsing HCI event and inval…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-47250

Published Nov 26, 2024

Out-of-bounds Read vulnerability in Apache NimBLE. Missing proper validation of HCI advertising report could lead to out-of-bound access when parsing HCI event and thus bogus GAP…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-47249

Published Nov 26, 2024

Improper Validation of Array Index vulnerability in Apache NimBLE. Lack of input validation for HCI events from controller could result in out-of-bound memory corruption and cras…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-47248

Published Nov 26, 2024

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE. Specially crafted MESH message could result in memory corruption when non-d…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24746

Published Apr 6, 2024

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache NimBLE.  Specially crafted GATT operation can cause infinite loop in GATT server leading to denial…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1