CVE-2024-45433

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of proper return control flow after detecting an unusual condition. An attacker can leverage this to bypass a security validation and make the incoming data be processed.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:opensynergy:blue_sdk:*:*:*:*:*:*:*:*

History

02 Oct 2025, 20:02

Type Values Removed Values Added
First Time Opensynergy blue Sdk
Opensynergy
References () https://pcacybersecurity.com/resources/advisory/perfekt-blue - () https://pcacybersecurity.com/resources/advisory/perfekt-blue - Exploit, Third Party Advisory
References () https://www.opensynergy.com/ - () https://www.opensynergy.com/ - Product
CPE cpe:2.3:a:opensynergy:blue_sdk:*:*:*:*:*:*:*:*

12 Sep 2025, 18:15

Type Values Removed Values Added
CWE CWE-705
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

12 Sep 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-12 17:15

Updated : 2025-10-02 20:02


NVD link : CVE-2024-45433

Mitre link : CVE-2024-45433

CVE.ORG link : CVE-2024-45433


JSON object : View

Products Affected

opensynergy

  • blue_sdk
CWE
CWE-705

Incorrect Control Flow Scoping