CVE-2024-6135: BT:Classic: Multiple missing buf length checks
Published Sep 13, 2024
·Updated
BT:Classic: Multiple missing buf length checks
Affected Software
1 affected component
zephyrproject zephyr<=3.6.0
Event History
Sep 13, 2024
CVE Published
via MITRE·07:51 PM
Data Sourced
via MITRE·07:51 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-6135?
The severity of CVE-2024-6135 is classified as high due to multiple missing buffer length checks.
2
What software versions are affected by CVE-2024-6135?
CVE-2024-6135 affects Zephyr Project Manager versions up to and including 3.6.0.
3
How do I fix CVE-2024-6135?
To fix CVE-2024-6135, update Zephyr to a version that includes patches for the missing buffer length checks.
4
What is the impact of CVE-2024-6135?
The impact of CVE-2024-6135 may include potential buffer overflows and remote code execution.
5
Is there an official advisory for CVE-2024-6135?
Yes, an official advisory for CVE-2024-6135 is available on the GitHub repository for the Zephyr project.