High severity8.2NVD Advisory· Published Feb 1, 2023· Updated Jun 17, 2026
CVE-2022-30904
CVE-2022-30904
Description
In Bestechnic Bluetooth Mesh SDK (BES2300) V1.0, a buffer overflow vulnerability can be triggered during provisioning, because there is no check for the SegN field of the Transaction Start PDU.
Affected products
3- cpe:2.3:a:bestechnic:bluetooth_mesh_software_development_kit:1.0:*:*:*:*:*:*:*
- Bestechnic/Bluetooth Mesh SDKdescription
- Range: = V1.0
Patches
Vulnerability mechanics
References
1- docs.google.com/document/d/1is3dYwMcRIkhjvujzi5OgnaGBsQVtlew/editnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.