ORSHIN Attack Defense Framework

Remote code execution

Description

Remote code execution

Risk Assesment: 8.2

CWE

119

120

CVE

0781

0782

Attack Surfaces

Controller Implementation (MITRE EMB3D PID-11)

Android

Flouride

Attack Vectors

RCE (MITRE EMB3D TID-310)

Defenses

Check size before allocating buffers, Allocate buffers of the correct size for BT_HDR

Chech size before copying data, Check PAN buffer size before copying data