The Bluetooth stack on the BMW 330i 2011 allows a remote crash of the CD/Multimedia software via %x or %c format string specifiers in a device name.
References
Link | Resource |
---|---|
https://twitter.com/__Obzy__/status/864704956116254720 | Exploit Third Party Advisory |
Configurations
Information
Published : 2017-05-23 07:29
Updated : 2019-10-02 17:03
NVD link : CVE-2017-9212
Mitre link : CVE-2017-9212
JSON object : View
CWE
CWE-134
Use of Externally-Controlled Format String
Products Affected
bavarian_motor_works
- bluetooth_stack