CVE-2019-16336: Cypress CYBL11573
Medium severity, CVSS 6.5. EPSS: 1.5% chance of exploitation in the next 30 days.
The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length larger than the configured link layer maximum RX payload size, which allows attackers (in radio range) to cause a denial of service (crash) via a crafted BLE Link Layer frame.
Affected products
Published 2020-02-12. Last modified 2026-06-17.