CVE-2024-40568

CRITICAL

btstack mesh - Buffer Overflow in pb_adv_handle_tranaction_cont

Title source: llm
STIX 2.1

Description

Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote attacker to execute arbitrary code via the pb_adv_handle_tranaction_cont function in the src/mesh/pb_adv.c component

References (1)

Core 1

Scores

CVSS v3 9.8
EPSS 0.0206
EPSS Percentile 84.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-120
Status published
Published Sep 18, 2024
Tracked Since Feb 18, 2026