CVE Database
/

CVE-2020-36602

Back to search

CVE-2020-36602

Published: Sep 20, 2022

Modified: May 28, 2025

PUBLISHED

Description

There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the device physically and crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficient validation of message, which may be exploited to cause out-of-bounds read and write.

VendorProductVersions

n/a

576up005 HOTA-CM-H-Shark-BD;577HOTA-CM-H-Shark-BD;581up-HOTA-CM-H-Shark-BD;586-HOTA-CM-H-Shark-BD;588-HOTA-CM-H-Shark-BD;606-HOTA-CM-H-Shark-BD;BI-ACC-REPORT;CM-H-Shark-BD

affected
1.0.0.576-fullpackage
affected
1.0.0.577-fullpackage
affected
1.0.0.581-fullpackage
affected
1.0.0.586-fullpackage
affected
1.0.0.588-fullpackage

+3 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now