CVE-2025-44531

An issue in Realtek RTL8762EKF-EVB RTL8762E SDK v1.4.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted before a pairing public key is received during a Bluetooth connection attempt.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:realtek:rtl8762e_software_development_kit:1.4.0:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtl8762ekf-evb:-:*:*:*:*:*:*:*

History

09 Jul 2025, 19:07

Type Values Removed Values Added
CPE cpe:2.3:a:realtek:rtl8762e_software_development_kit:1.4.0:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtl8762ekf-evb:-:*:*:*:*:*:*:*
References () http://realtek.com - () http://realtek.com - Product
References () http://rtl8762ekf-evb.com - () http://rtl8762ekf-evb.com - Broken Link
References () https://github.com/yangting111/BLE_TEST/blob/main/result/PoC/Realtek/Pairing_Random_Before_Pairing_Public_Key.md - () https://github.com/yangting111/BLE_TEST/blob/main/result/PoC/Realtek/Pairing_Random_Before_Pairing_Public_Key.md - Exploit, Third Party Advisory
First Time Realtek rtl8762ekf-evb
Realtek rtl8762e Software Development Kit
Realtek

26 Jun 2025, 18:58

Type Values Removed Values Added
Summary
  • (es) Un problema en Realtek RTL8762EKF-EVB RTL8762E SDK v1.4.0 permite a los atacantes provocar una denegación de servicio (DoS) mediante el envío de una clave manipulada antes de que se reciba una clave pública de emparejamiento durante un intento de conexión Bluetooth.

24 Jun 2025, 20:15

Type Values Removed Values Added
CWE CWE-400
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

24 Jun 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-24 16:15

Updated : 2025-07-09 19:07


NVD link : CVE-2025-44531

Mitre link : CVE-2025-44531

CVE.ORG link : CVE-2025-44531


JSON object : View

Products Affected

realtek

  • rtl8762e_software_development_kit
  • rtl8762ekf-evb
CWE
CWE-400

Uncontrolled Resource Consumption