CVE-2023-35867

Publication date

2023-12-18 12:59:48

Family

bosch

State

PUBLISHED

Description

An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through Man-in-the-Middle attacks.