Unsafe fixed-size memcpy operation in AudioBuffer::writeSpace() of schreibfaul1 ESP32-audioI2S 3.4.5 allows remote heap buffer overflow. The code copies a full UINT16_MAX bytes without validating destination available space, causing out-of-bounds memory write.
Metrics
Affected Vendors & Products
References
History
Tue, 28 Jul 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-122 | |
| Metrics |
cvssV3_1
|
Tue, 28 Jul 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unsafe fixed-size memcpy operation in AudioBuffer::writeSpace() of schreibfaul1 ESP32-audioI2S 3.4.5 allows remote heap buffer overflow. The code copies a full UINT16_MAX bytes without validating destination available space, causing out-of-bounds memory write. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-07-28T18:27:59.665Z
Reserved: 2026-06-07T00:00:00.000Z
Link: CVE-2026-51260
Updated: 2026-07-28T18:27:12.871Z
No data.
No data.
OpenCVE Enrichment
No data.