Description
A malformed Bluetooth connection request message can cause the RS9116W/SiWx917 to leak potentially sensitive information. 
See vulnerability B-E4 in the related paper below.
Published: 2026-08-13
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A malformed Bluetooth connection request message containing an inflated length field triggers a memory leak in the RS9116W/SiWx917 firmware, potentially exposing sensitive information that resides in memory. The vulnerability manifests as a buffer over-read (CWE‑126) and does not directly allow code execution or denial of service; its primary consequence is inadvertent information disclosure.

Affected Systems

Silicon Labs WiseConnect RS9116W/SiWx917 wireless modules are affected. Specific firmware or hardware revision identifiers are not supplied in the data, so all variants of this device family should be considered potentially vulnerable until a vendor advisory clarifies the scope.

Risk and Exploitability

The CVSS base score of 5.3 indicates a moderate threat level for confidentiality impacts. Because the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, publicly known exploitation is unlikely but not ruled out. Inferred from the description, the attack vector is likely remote via a Bluetooth connection request, implying that an adversary can trigger the leak by sending a crafted packet without any authentication or privileged access.

Generated by OpenCVE AI on August 13, 2026 at 17:17 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Acquire and install the latest Silabs firmware release that addresses the B‑E4 memory‑leak issue.
  • Configure the device, if supported, to reject or tightly validate Bluetooth packets whose length fields exceed the standard limits.
  • Enable monitoring for abnormal memory consumption or memory‑related logs and set alerts to detect potential exploitation attempts.

Generated by OpenCVE AI on August 13, 2026 at 17:17 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 14 Aug 2026 10:00:00 +0000

Type Values Removed Values Added
First Time appeared Silabs.com
Silabs.com wiseconnect
Vendors & Products Silabs.com
Silabs.com wiseconnect

Thu, 13 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 13 Aug 2026 15:15:00 +0000

Type Values Removed Values Added
Description A malformed Bluetooth connection request message can cause the RS9116W/SiWx917 to leak potentially sensitive information.  See vulnerability B-E4 in the related paper below.
Title RS9116W/SiWx917 malformed packet with increased length field causes memory leak
Weaknesses CWE-126
References
Metrics cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Silabs.com Wiseconnect
cve-icon MITRE

Status: PUBLISHED

Assigner: Silabs

Published:

Updated: 2026-08-13T16:08:41.106Z

Reserved: 2026-07-23T15:47:23.377Z

Link: CVE-2026-65936

cve-icon Vulnrichment

Updated: 2026-08-13T16:08:10.000Z

cve-icon NVD

Status : Received

Published: 2026-08-13T15:19:56.423

Modified: 2026-08-13T16:18:41.690

Link: CVE-2026-65936

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-14T09:31:14Z

Weaknesses