Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f29w-mc54-fh2c

Опубликовано: 28 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.9

Описание

In Bluetooth Mesh SDK 6.1.4 and earlier, malformed extended advertisements can trigger out-of-bounds writes leading to stack corruption and remote code execution. These messages must come from a device that has already joined the network. Only provisioners supporting extended advertisements may be impacted.

In Bluetooth Mesh SDK 6.1.4 and earlier, malformed extended advertisements can trigger out-of-bounds writes leading to stack corruption and remote code execution. These messages must come from a device that has already joined the network. Only provisioners supporting extended advertisements may be impacted.

EPSS

Процентиль: 19%
0.00266
Низкий

8.9 High

CVSS4

Дефекты

CWE-130

Связанные уязвимости

nvd
11 дней назад

In Bluetooth Mesh SDK 6.1.4 and earlier, malformed extended advertisements can trigger out-of-bounds writes leading to stack corruption and remote code execution. These messages must come from a device that has already joined the network. Only provisioners supporting extended advertisements may be impacted.

EPSS

Процентиль: 19%
0.00266
Низкий

8.9 High

CVSS4

Дефекты

CWE-130