Denial of Service Vulnerability in RS9116-WiseConnect SDK by Silicon Labs
CVE-2025-4321

7.1HIGH

Key Information:

Vendor

Silabs.com

Status
Vendor
CVE Published:
17 November 2025

What is CVE-2025-4321?

A flaw exists in the RS9116-WiseConnect SDK for Bluetooth devices that exposes them to a Denial of Service scenario. When the device receives malformed L2CAP packets, it can become unresponsive, necessitating a hard reset for normal operation to resume. Users must be aware of this vulnerability to protect their devices from potential service disruptions.

Affected Version(s)

RS9116W 0 <= 2.12.1

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-4321 : Denial of Service Vulnerability in RS9116-WiseConnect SDK by Silicon Labs