ORSHIN Attack Defense Framework

Heap-Based type confusion

Description

Heap-Based type confusion

Risk Assesment: 8.8

CWE

20

CVE

12351

Attack Surfaces

Controller Implementation (MITRE EMB3D PID-11)

Kernel or Operating System (MITRE EMB3D PID-23)

Kernel or Operating System (MITRE EMB3D PID-23)

BlueZ

HCI

Attack Vectors

Buffer overflowOut of Bounds (MITRE EMB3D TID-327)

Buffer overflowOut of Bounds (MITRE EMB3D TID-327)

Defenses

Add type validation