Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gm95-7c28-qmq3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wireless Access Control setup process. A threat actor can exploit this vulnerability to force the device to connect to a SSID or cause a denial of service.

A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wireless Access Control setup process. A threat actor can exploit this vulnerability to force the device to connect to a SSID or cause a denial of service.

EPSS

Процентиль: 60%
0.00391
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.2
nvd
больше 4 лет назад

A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wireless Access Control setup process. A threat actor can exploit this vulnerability to force the device to connect to a SSID or cause a denial of service.

EPSS

Процентиль: 60%
0.00391
Низкий

Дефекты

CWE-787