Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w3vp-q725-9fj8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payload length, allowing attackers in radio range to cause a buffer overflow via a crafted Link Layer packet.

The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payload length, allowing attackers in radio range to cause a buffer overflow via a crafted Link Layer packet.

EPSS

Процентиль: 43%
0.00211
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 5.7
nvd
почти 6 лет назад

The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payload length, allowing attackers in radio range to cause a buffer overflow via a crafted Link Layer packet.

EPSS

Процентиль: 43%
0.00211
Низкий

Дефекты

CWE-120