OpenSynergy BlueSDK (aka Blue SDK) through 6.x mishandles a function call. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from an incorrect variable used as a function argument. An attacker can leverage this to cause unexpected behavior or obtain sensitive information.
- https://pcacybersecurity.com/resources/advisory/perfekt-blue
- https://github.com/ARPSyndicate/cve-scores