
CVE-2025-15645 Ledger Nano X, Flex, and Stax devices contain a denial of service vulnerability in the MCU firmware update process due to missing validation of the reset_handler para… https://www.cve.org/CVERecord?id=CVE-2025-15645
Post summary
CVE-2025-15645 is a denial‑of‑service vulnerability in Ledger’s firmware update process caused by missing reset_handler validation; no PoC, exploit code, patch, or active exploitation has been reported.
