CVE-2024-49748

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 787

Summary

CVE-2024-49748 is a identified vulnerability in the gatt_sr.cc file, specifically in the function gatts_process_primary_service_req. This issue involves a heap buffer overflow, which can be exploited to conduct a remote code execution without requiring any additional execution privileges or user interaction. The out-of-bounds write in this context can lead to serious security consequences.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share