Description
All versions of the package node-bluetooth-serial-port are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-NODEBLUETOOTHSERIALPORT-3311820
Related Vulnerabilities
CVE-2016-10543 Vulnerability in npm package call
CVE-2020-28494 Vulnerability in npm package total.js
CVE-2021-29459 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web
CVE-2023-26135 Vulnerability in npm package flatnest
CVE-2020-28282 Vulnerability in maven package org.webjars.npm:getobject