https://seclists.org/oss-sec/2024/q4/120: CVE-2024-47249: Apache NimBLE: Lack of input sanitization leading to out-of-bound ads in multiple advertisement handler
Published Nov 26, 2024
·Updated
Affected Software
1 affected component
Apache NimBLE<=1.7.0
Frequently Asked Questions
1
What is the severity of CVE-2024-47249?
The severity of CVE-2024-47249 is rated as low.
2
What versions of Apache NimBLE are affected by CVE-2024-47249?
Apache NimBLE versions through 1.7.0 are affected by CVE-2024-47249.
3
What type of vulnerability is CVE-2024-47249?
CVE-2024-47249 is an Improper Validation of Array Index vulnerability.
4
What is the potential impact of CVE-2024-47249?
The potential impact of CVE-2024-47249 includes out-of-bound memory corruption and crashes.
5
How do I fix CVE-2024-47249?
To fix CVE-2024-47249, update to a version of Apache NimBLE beyond 1.7.0 where the issue has been addressed.