ti records
28 published records for vendor ti.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 3.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-190 Integer Overflow or Wraparound8
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
- CWE-347 Improper Verification of Cryptographic Signature2
- CWE-121 Stack-based Buffer Overflow2
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-325 Missing Cryptographic Step1
The weakness classes this vendor ships most often: where to look.
CWEAll records
28 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2023-29468No exploit | The Texas Instruments (TI) WiLink WL18xx MCP driver does not limit the number of information elements (IEs) of type XCC_EXT_1_IE_ID or XCC_Eti · wilink8-wifi-mcp8 · CWE-120 | Critical9.8 | — | 10.1% | Aug 14, 2023 |
40Plan | CVE-2021-22679No exploit | The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to remotely execute codti · cc3100 software development kit · CWE-190 | Critical9.8 | — | 1.8% | May 7, 2021 |
40Plan | CVE-2021-22671No exploit | Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execute code on the Simplti · cc3100 software development kit · CWE-190 | Critical9.8 | — | 1.8% | May 7, 2021 |
36Monitor | CVE-2018-16986No exploit | Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malformeti · ble-stack · CWE-787 | High8.8 | — | 2.8% | Nov 6, 2018 |
36Monitor | CVE-2019-15948No exploit | Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a bti · cc256xc-bt-sp firmware · CWE-120 | High8.8 | — | 2.5% | Nov 13, 2019 |
35Monitor | CVE-2020-13593No exploit | The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3 ti · simplelink-cc2640r2 software development kit · CWE-347 | High8.8 | — | 0.3% | Aug 31, 2020 |
35Monitor | CVE-2022-25334No exploit | Stack overflow on SK_LOAD signature length field in Texas Instruments OMAP L138ti · omap l138 firmware · CWE-121 | High8.8 | — | 0.2% | Oct 19, 2023 |
35Monitor | CVE-2022-25333No exploit | Flawed SK_LOAD module authenticity check in Texas Instruments OMAP L138ti · omap l138 firmware · CWE-347 | High8.8 | — | 0.1% | Oct 19, 2023 |
32Monitor | CVE-2021-22673No exploit | The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which ti · cc3100 software development kit · CWE-121 | High8.0 | — | 1.2% | May 7, 2021 |
32Monitor | CVE-2020-27890No exploit | The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Write Attributes Nti · z-stack | High8.2 | — | 1.0% | Oct 27, 2020 |
31Monitor | CVE-2021-22677No exploit | An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such as a denial-of-servti · cc3100 software development kit · CWE-190 | High7.8 | — | 0.3% | May 7, 2021 |
31Monitor | CVE-2021-27504No exploit | Texas Instruments FREERTOS Integer Overflow or Wraparoundamazon · freertos · CWE-190 | High7.8 | — | 0.3% | Nov 21, 2023 |
31Monitor | CVE-2021-27502No exploit | Texas Instruments TI-RTOS Integer Overflow or Wraparoundti · real-time operating system · CWE-190 | High7.8 | — | 0.3% | Nov 21, 2023 |
31Monitor | CVE-2021-27429No exploit | Texas Instruments TI-RTOS Integer Overflow or Wraparoundti · real-time operating system · CWE-190 | High7.8 | — | 0.3% | Nov 20, 2023 |
31Monitor | CVE-2021-22636No exploit | Texas Instruments TI-RTOS Integer Overflow or Wraparoundti · real-time operating system · CWE-190 | High7.8 | — | 0.3% | Nov 20, 2023 |
30Monitor | CVE-2020-27891No exploit | The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Read Reporting Conti · z-stack | High7.5 | — | 1.5% | Oct 27, 2020 |
30Monitor | CVE-2020-27892No exploit | The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Discover Commands ti · z-stack | High7.5 | — | 1.5% | Oct 27, 2020 |
28Monitor | CVE-2021-22675No exploit | The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which may allow an attackti · cc3100 software development kit · CWE-190 | High7.2 | — | 1.4% | May 7, 2021 |
27Monitor | CVE-2019-17520No exploit | The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Pti · cc2640r2 software development kit · CWE-120 | Medium6.5 | — | 1.8% | Feb 10, 2020 |
27Monitor | CVE-2018-5383No exploit | Bluetooth implementations may not sufficiently validate elliptic curve parameters during Diffie-Hellman key exchangeti · wl18xx bluetooth service pack · CWE-325 | Medium6.8 | — | 0.8% | Aug 7, 2018 |
27Monitor | CVE-2020-16630No exploit | TI’s BLE stack caches and reuses the LTK’s property for a bonded mobile.ti · 15.4-stack · CWE-863 | Medium6.8 | — | 0.7% | Sep 20, 2021 |
26Monitor | CVE-2019-19193No exploit | The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5ti · ble-stack | Medium6.5 | — | 0.7% | Feb 10, 2020 |
26Monitor | CVE-2021-34149No exploit | The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does not properly handle the reception of continuous LMP_AU_Randti · cc256xcqfn-em firmware | Medium6.5 | — | 0.5% | Sep 7, 2021 |
22Monitor | CVE-2024-41629No exploit | An issue in Texas Instruments Fusion Digital Power Designer v.7.10.1 allows a local attacker to obtain sensitive information via the plainteti · fusion digital power designer · CWE-312 | Medium5.5 | — | 0.2% | Sep 12, 2024 |
21Monitor | CVE-2021-21966No exploit | An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution Nti · simplelink cc32xx software development kit · CWE-457 | Medium5.3 | — | 1.4% | Feb 16, 2022 |
- CVE-2023-2946842Plan
The Texas Instruments (TI) WiLink WL18xx MCP driver does not limit the number of information elements (IEs) of type XCC_EXT_1_IE_ID or XCC_E
CriticalCVSS 9.8No exploitEPSS 10%ti · wilink8-wifi-mcp8Aug 14, 2023
- CVE-2021-2267940Plan
The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to remotely execute cod
CriticalCVSS 9.8No exploitEPSS 2%ti · cc3100 software development kitMay 7, 2021
- CVE-2021-2267140Plan
Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execute code on the Simpl
CriticalCVSS 9.8No exploitEPSS 2%ti · cc3100 software development kitMay 7, 2021
- CVE-2018-1698636Monitor
Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malforme
HighCVSS 8.8No exploitEPSS 3%ti · ble-stackNov 6, 2018
- CVE-2019-1594836Monitor
Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a b
HighCVSS 8.8No exploitEPSS 3%ti · cc256xc-bt-sp firmwareNov 13, 2019
- CVE-2020-1359335Monitor
The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3
HighCVSS 8.8No exploitEPSS 0%ti · simplelink-cc2640r2 software development kitAug 31, 2020
- CVE-2022-2533435Monitor
Stack overflow on SK_LOAD signature length field in Texas Instruments OMAP L138
HighCVSS 8.8No exploitEPSS 0%ti · omap l138 firmwareOct 19, 2023
- CVE-2022-2533335Monitor
Flawed SK_LOAD module authenticity check in Texas Instruments OMAP L138
HighCVSS 8.8No exploitEPSS 0%ti · omap l138 firmwareOct 19, 2023
- CVE-2021-2267332Monitor
The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which
HighCVSS 8.0No exploitEPSS 1%ti · cc3100 software development kitMay 7, 2021
- CVE-2020-2789032Monitor
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Write Attributes N
HighCVSS 8.2No exploitEPSS 1%ti · z-stackOct 27, 2020
- CVE-2021-2267731Monitor
An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such as a denial-of-serv
HighCVSS 7.8No exploitEPSS 0%ti · cc3100 software development kitMay 7, 2021
- CVE-2021-2750431Monitor
Texas Instruments FREERTOS Integer Overflow or Wraparound
HighCVSS 7.8No exploitEPSS 0%amazon · freertosNov 21, 2023
- CVE-2021-2750231Monitor
Texas Instruments TI-RTOS Integer Overflow or Wraparound
HighCVSS 7.8No exploitEPSS 0%ti · real-time operating systemNov 21, 2023
- CVE-2021-2742931Monitor
Texas Instruments TI-RTOS Integer Overflow or Wraparound
HighCVSS 7.8No exploitEPSS 0%ti · real-time operating systemNov 20, 2023
- CVE-2021-2263631Monitor
Texas Instruments TI-RTOS Integer Overflow or Wraparound
HighCVSS 7.8No exploitEPSS 0%ti · real-time operating systemNov 20, 2023
- CVE-2020-2789130Monitor
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Read Reporting Con
HighCVSS 7.5No exploitEPSS 1%ti · z-stackOct 27, 2020
- CVE-2020-2789230Monitor
The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Discover Commands
HighCVSS 7.5No exploitEPSS 1%ti · z-stackOct 27, 2020
- CVE-2021-2267528Monitor
The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which may allow an attack
HighCVSS 7.2No exploitEPSS 1%ti · cc3100 software development kitMay 7, 2021
- CVE-2019-1752027Monitor
The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM P
MediumCVSS 6.5No exploitEPSS 2%ti · cc2640r2 software development kitFeb 10, 2020
- CVE-2018-538327Monitor
Bluetooth implementations may not sufficiently validate elliptic curve parameters during Diffie-Hellman key exchange
MediumCVSS 6.8No exploitEPSS 1%ti · wl18xx bluetooth service packAug 7, 2018
- CVE-2020-1663027Monitor
TI’s BLE stack caches and reuses the LTK’s property for a bonded mobile.
MediumCVSS 6.8No exploitEPSS 1%ti · 15.4-stackSep 20, 2021
- CVE-2019-1919326Monitor
The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5
MediumCVSS 6.5No exploitEPSS 1%ti · ble-stackFeb 10, 2020
- CVE-2021-3414926Monitor
The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does not properly handle the reception of continuous LMP_AU_Rand
MediumCVSS 6.5No exploitEPSS 1%ti · cc256xcqfn-em firmwareSep 7, 2021
- CVE-2024-4162922Monitor
An issue in Texas Instruments Fusion Digital Power Designer v.7.10.1 allows a local attacker to obtain sensitive information via the plainte
MediumCVSS 5.5No exploitEPSS 0%ti · fusion digital power designerSep 12, 2024
- CVE-2021-2196621Monitor
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution N
MediumCVSS 5.3No exploitEPSS 1%ti · simplelink cc32xx software development kitFeb 16, 2022