Логотип exploitDog
bind:CVE-2024-45434
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-45434

Количество 3

Количество 3

nvd логотип

CVE-2024-45434

5 месяцев назад

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of validating the existence of an object before performing operations on the object (aka use after free). An attacker can leverage this to achieve remote code execution in the context of a user account under which the Bluetooth process runs.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-gfw9-vqj5-5mg2

5 месяцев назад

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of validating the existence of an object before performing operations on the object (aka use after free). An attacker can leverage this to achieve remote code execution in the context of a user account under which the Bluetooth process runs.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2025-09385

7 месяцев назад

Уязвимость стека Bluetooth-протоколов OpenSynergy BlueSDK, позволяющая нарушителю выполнить произвольный код и вызвать отказ в обслуживании

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-45434

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of validating the existence of an object before performing operations on the object (aka use after free). An attacker can leverage this to achieve remote code execution in the context of a user account under which the Bluetooth process runs.

CVSS3: 9.8
1%
Низкий
5 месяцев назад
github логотип
GHSA-gfw9-vqj5-5mg2

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of validating the existence of an object before performing operations on the object (aka use after free). An attacker can leverage this to achieve remote code execution in the context of a user account under which the Bluetooth process runs.

CVSS3: 9.8
1%
Низкий
5 месяцев назад
fstec логотип
BDU:2025-09385

Уязвимость стека Bluetooth-протоколов OpenSynergy BlueSDK, позволяющая нарушителю выполнить произвольный код и вызвать отказ в обслуживании

CVSS3: 8
1%
Низкий
7 месяцев назад

Уязвимостей на страницу