📦 Coros Pace 3 Firmware

by Yftech

🔍 What is Coros Pace 3 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-48706

CRITICAL CVSS 9.1 Jun 20, 2025

An out-of-bounds read vulnerability in COROS PACE 3 devices allows attackers to cause denial of service by sending crafted BLE messages that force device reboots. This affects COROS PACE 3 smartwatch ...

CVE-2025-32877

CRITICAL CVSS 9.8 Jun 20, 2025

COROS PACE 3 smartwatches through firmware version 3.0808.0 incorrectly identify themselves as devices without input/output capabilities, forcing Bluetooth Low Energy (BLE) pairing to use the 'Just Wo...

CVE-2025-32880

CRITICAL CVSS 9.8 Jun 20, 2025

COROS PACE 3 smartwatches download firmware updates over unencrypted HTTP connections, allowing attackers on the same WLAN network to intercept and potentially modify firmware files. This affects all ...

CVE-2025-32879

HIGH CVSS 8.8 Jun 20, 2025

COROS PACE 3 fitness watches through version 3.0808.0 automatically advertise via Bluetooth Low Energy when not connected to a paired device, allowing any nearby attacker to connect without authentica...

CVE-2025-32876

MEDIUM CVSS 6.8 Jun 20, 2025

This vulnerability allows attackers within Bluetooth range to eavesdrop on communications between COROS PACE 3 smartwatches and paired devices. The BLE implementation uses insecure legacy pairing with...