Wireless Combo Chips Vulnerable to Memory Read Attack
CVE-2020-10368

Currently unrated

Key Information:

Vendor

Cypress

Vendor
CVE Published:
10 November 2024

What is CVE-2020-10368?

Certain wireless combo chips from Cypress Semiconductor and Broadcom are susceptible to a vulnerability that allows for unauthorized memory read access through a technique known as a Spectra attack. This issue arises when specific firmware updates, released in January 2021, are not implemented. The vulnerability poses significant risks, particularly for data leakage, and requires immediate attention to mitigate potential exploitation.

References

Timeline

  • Vulnerability published

.
CVE-2020-10368 : Wireless Combo Chips Vulnerable to Memory Read Attack