PT-2025-29083 · Opensynergy · Bluesdk

Published

2025-07-07

·

Updated

2025-10-02

·

CVE-2024-45433

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: OpenSynergy BlueSDK versions through 6.x
Description: The OpenSynergy BlueSDK Bluetooth stack contains an incorrect control flow scoping issue. The flaw is due to improper handling of exceptional conditions and a lack of proper return control flow after detecting an unusual condition. This can allow an attacker to bypass security validation and process incoming data. The vulnerability affects the Bluetooth protocols stack.
Recommendations: Versions prior to 7.0 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

BDU:2025-09386
CVE-2024-45433

Affected Products

Bluesdk