• caglararli@hotmail.com
  • 05386281520

CVE-2024-6442 | zephyrproject-rtos Zephyr up to 3.6 Global Buffer ascs.c ascs_cp_rsp_add out-of-bounds write (GHSA-m22j-ccg7-4v4h)

Çağlar Arlı      -    35 Views

CVE-2024-6442 | zephyrproject-rtos Zephyr up to 3.6 Global Buffer ascs.c ascs_cp_rsp_add out-of-bounds write (GHSA-m22j-ccg7-4v4h)

A vulnerability classified as critical has been found in zephyrproject-rtos Zephyr up to 3.6. This affects the function ascs_cp_rsp_add of the file /subsys/bluetooth/audio/ascs.c of the component Global Buffer Handler. The manipulation leads to out-of-bounds write. This vulnerability is uniquely identified as CVE-2024-6442. Access to the local network is required for this attack. There is no exploit available.