-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability description explicitly names 'pin_code_reply_dump' in 'tools/parser/hci.c' as the vulnerable function. The provided URL from spinics.net confirms this and shows the exact line of code (memcpy) causing the buffer overflow due to a lack of boundary checks on the 'pin' array when copying data from 'pin_code_reply_cp *cp' parameter. The ASAN report also points to this function and line.
KEV Misses 88% of Exploited CVEs- Get the report