CVE-2024-7139: Silabs.com RS9116 Bluetooth SDK

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Due to an unchecked buffer length, a specially crafted L2CAP packet can cause a buffer overflow. This buffer overflow triggers an assert, which results in a temporary denial of service.  If a watchdog timer is not enabled, a hard reset is required to recover the device.

Affected products

  • Silabs.com RS9116 Bluetooth SDK: up to and including 2.10.4

Published 2024-12-19. Last modified 2026-06-17.