Impact
The vulnerability is a buffer overflow in the SBC_DecodeFrames() function of the Bestechnic BES2300 Bluetooth Audio SoC firmware. A crafted audio frame overflows an internal buffer, causing the decoder to crash or reset. Since the decoder is essential for audio playback, the result is a denial of service that disrupts audio services and may impair system reliability. The flaw is a classic unchecked buffer write represented by the CWE identifier CWE-617.
Affected Systems
Devices running the BES2300 Bluetooth Audio SoC firmware v3.x and earlier are affected. Firmware version 5.0 and later incorporates the fix, rendering those versions immune.
Risk and Exploitability
The defect can be triggered by sending a malformed audio frame over the Bluetooth interface, which is the typical delivery mechanism for audio data. The CVSS score of 6.5 reflects moderate severity, while the EPSS score of <1% indicates a low likelihood of exploitation. The flaw is not listed in CISA KEV, suggesting it has not been widely exploited in the wild. Exploitation would require proximity to the device to deliver the crafted frame.
OpenCVE Enrichment