CVE-2022-35624: High severity NordicSemi Nrf5 Sdk For Mesh vulnerability
Published Aug 15, 2022
·Updated
In Nordic nRF5 SDK for Mesh 5.0, a heap overflow vulnerability can be triggered by sending a series of segmented packets with SegO > SegN
Affected Software
1 affected component
NordicSemi Nrf5 Sdk For Mesh<=5.0
Event History
Aug 15, 2022
CVE Published
via MITRE·04:10 PM
Data Sourced
via MITRE·04:10 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-35624?
The severity of CVE-2022-35624 is high with a severity value of 8.8.
2
What is the affected software for CVE-2022-35624?
The affected software for CVE-2022-35624 is Nordic nRF5 SDK for Mesh 5.0.
3
How can a heap overflow vulnerability be triggered in CVE-2022-35624?
A heap overflow vulnerability in CVE-2022-35624 can be triggered by sending a series of segmented packets with SegO > SegN.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-35624?
The Common Weakness Enumeration (CWE) ID for CVE-2022-35624 is 787.
5
Is there any reference documentation available for CVE-2022-35624?
Yes, reference documentation for CVE-2022-35624 is available at the following link: [link](https://docs.google.com/document/d/1BrgB1bQiL-cMXQGaXJWSSyaZY51Zxomp/edit?usp=sharing&ouid=112184420235437308950&rtpof=true&sd=true).