Description
All versions of the package node-bluetooth are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-NODEBLUETOOTH-3311821
Related Vulnerabilities
CVE-2023-5654 Vulnerability in npm package react-devtools-core
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-jdk15to18
CVE-2022-24198 Vulnerability in maven package com.itextpdf:itext7-core
CVE-2023-49447 Vulnerability in maven package com.jfinal:jfinal
CVE-2023-37962 Vulnerability in maven package io.jenkins.plugins:benchmark-evaluator