CVE-2024-6258 | zephyrproject-rtos Zephyr up to 3.6 BT rfcomm_handle_data net_buf heap-based overflow (GHSA-7833-fcpm-3ggm)
A vulnerability marked as critical has been reported in zephyrproject-rtos Zephyr up to 3.6. Impacted is the function rfcomm_handle_data of the component BT. Performing manipulation of the argument net_buf results in heap-based buffer overflow.
This vulnerability is identified as CVE-2024-6258. The attack can only be performed from the local network. There is not any exploit available.