Loading market data...
← Back to CVE feed

CVE-2026-45816

HIGH CVSS 7.5 View on NVD ↗

Description

NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event. This requires disabled asserts (otherwise assert would trigger before NULL dereference) and bogus (or misbehaving) controller, thus severity is low. This issue affects Apache NimBLE: through 1.9.0. Users are recommended to upgrade to version 1.10.0, which fixes the issue.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Published: Jul 24, 2026 13:18 UTC Modified: Jul 24, 2026 20:47 UTC