CVE-2022-46399

HIGH

Microchip RN4870 Firmware 1.43 - Denial of Service via ConReqTimeoutZero

Title source: llm
STIX 2.1

Description

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) is unresponsive with ConReqTimeoutZero.

Scores

CVSS v3 7.5
EPSS 0.0075
EPSS Percentile 50.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-400
Status published
Products (14)
microchip/bm64_firmware 1.43
microchip/bm70_firmware 1.43
microchip/bm71_firmware 1.43
microchip/bm77_firmware 1.43
microchip/bm78_firmware 1.43
microchip/bm83_firmware 1.43
microchip/is1870_firmware 1.43
microchip/is1871_firmware 1.43
microchip/pic32cx1012bz25048_firmware 1.43
microchip/pic_lightblue_explorer_demo_firmware 4.2_dt100112
... and 4 more
Published Dec 19, 2022
Tracked Since Feb 18, 2026