CVE-2023-0397

A malicious / defect bluetooth controller can cause a Denial of Service due to unchecked input in le_read_buffer_size_complete.
References
Configurations

Configuration 1 (hide)

cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:*

History

25 Jan 2023, 20:52

Type Values Removed Values Added
CWE CWE-665
First Time Zephyrproject
Zephyrproject zephyr
CPE cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:*
References (MISC) https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-wc2h-h868-q7hj - (MISC) https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-wc2h-h868-q7hj - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

19 Jan 2023, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-19 06:15

Updated : 2023-12-10 14:48


NVD link : CVE-2023-0397

Mitre link : CVE-2023-0397

CVE.ORG link : CVE-2023-0397


JSON object : View

Products Affected

zephyrproject

  • zephyr
CWE
CWE-665

Improper Initialization

CWE-703

Improper Check or Handling of Exceptional Conditions