CVE-2024-22905: Buffer Overflow
Published Apr 19, 2024
·Updated
Buffer Overflow vulnerability in ARM mbed-os v.6.17.0 allows a remote attacker to execute arbitrary code via a crafted script to the hciTrSerialRxIncoming function.
Affected Software
2 affected components
Arm mbed-os
Arm Mbed OS=6.17.0
Event History
Apr 19, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22905?
CVE-2024-22905 is classified as a critical severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2024-22905?
To fix CVE-2024-22905, update to the latest version of ARM mbed-os that addresses this buffer overflow issue.
3
What is the impact of CVE-2024-22905?
The impact of CVE-2024-22905 includes the potential for arbitrary code execution by a remote attacker.
4
Which versions of ARM mbed-os are affected by CVE-2024-22905?
CVE-2024-22905 affects ARM mbed-os version 6.17.0 and possibly earlier versions.
5
What component is primarily affected by CVE-2024-22905?
The hciTrSerialRxIncoming function within the ARM mbed-os connectivity feature is primarily affected by CVE-2024-22905.