Описание
On Audi A7 MMI 2014 vehicles, the Bluetooth stack in Audi A7 MMI Multiplayer with version (N+R_CN_AU_P0395) mishandles %x and %s format string specifiers in a device name. This may lead to memory content leaks and potentially crash the services.
Ссылки
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:a:audi:mmi_multiplayer:n\+r_cn_au_p0395:*:*:*:*:*:*:*
cpe:2.3:h:audi:a7:-:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00176
Низкий
7.1 High
CVSS3
4.8 Medium
CVSS2
Дефекты
CWE-134
Связанные уязвимости
github
больше 3 лет назад
On Audi A7 MMI 2014 vehicles, the Bluetooth stack in Audi A7 MMI Multiplayer with version (N+R_CN_AU_P0395) mishandles %x and %s format string specifiers in a device name. This may lead to memory content leaks and potentially crash the services.
EPSS
Процентиль: 39%
0.00176
Низкий
7.1 High
CVSS3
4.8 Medium
CVSS2
Дефекты
CWE-134