ZeroHour

CVE-2022-30904

PoC
CVSS 3.1
8.8 high
EPSS
<1%p53
Published
()
Modified
Description

In Bestechnic Bluetooth Mesh SDK (BES2300) V1.0, a buffer overflow vulnerability can be triggered during provisioning, because there is no check for the SegN field of the Transaction Start PDU.

Vendors
bestechnic
Products
bluetooth mesh software development kit
Weakness
CWE-787
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.