Stack-based buffer overflow in blynk-library - CVE-2022-29496
Published: June 17, 2022
blynk-library
Blynk IoT platform
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the BlynkConsole.h runCommand functionality. A remote unauthenticated attacker can send a specially crafted network request, trigger stack-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.