ZeroHour

CVE-2024-45433

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p45
Published
()
Modified
Description

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of proper return control flow after detecting an unusual condition. An attacker can leverage this to bypass a security validation and make the incoming data be processed.

Vendors
opensynergy
Products
blue sdk
Weakness
CWE-705
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

In the news