Description
All versions of the package node-bluetooth-serial-port are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-NODEBLUETOOTHSERIALPORT-3311820
Related Vulnerabilities
CVE-2022-39225 Vulnerability in npm package parse-server
CVE-2022-38639 Vulnerability in npm package markdown-nice
CVE-2022-36272 Vulnerability in maven package net.mingsoft:ms-mcms
CVE-2023-49375 Vulnerability in maven package com.jfinal:jfinal
CVE-2020-28270 Vulnerability in npm package object-hierarchy-access