Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache NimBLE.  Specially crafted GATT operation can cause infinite loop in GATT server leading to denial of service in Bluetooth stack or device. This issue affects Apache NimBLE: through 1.6.0. Users are recommended to upgrade to version 1.7.0, which fixes the issue.
History

Thu, 13 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Apache
Apache nimble
CPEs cpe:2.3:a:apache:nimble:*:*:*:*:*:*:*:*
Vendors & Products Apache
Apache nimble
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 22 Aug 2024 15:00:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2025-02-13T17:40:20.471Z

Reserved: 2024-01-29T10:30:51.628Z

Link: CVE-2024-24746

cve-icon Vulnrichment

Updated: 2024-08-01T23:28:11.886Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-06T12:15:08.310

Modified: 2024-11-21T08:59:36.647

Link: CVE-2024-24746

cve-icon Redhat

No data.