SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-42805

HIGH · CVSS 8.4 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability in the Bosch Sensortec BHI385 SensorAPI allows an attacker to exploit the debug message parser function, which improperly handles an attacker-controlled message length. This can lead to memory corruption, resulting in firmware crashes, Denial of Service (DoS), or potentially arbitrary code execution. Organizations using affected Bosch Sensortec products should prioritize this vulnerability to mitigate risks associated with compromised sensors or bus participants.

CVE
CVE-2026-42805
Severity
HIGH
CVSS
8.4
EPSS
0.14%

Original NVD Description

A stack-based buffer overflow vulnerability exists in the Bosch Sensortec BHI385 SensorAPI (C library) within the debug message parser function bhi385_parse_debug_message (located in bhi385_parse.c). The function parses FIFO events and extracts an 8-bit message length directly from the attacker-controlled event payload (callback_info->data_ptr[0]) without enforcing bounds checks or clamping the value. When copying the payload into a fixed-size stack buffer of 17 bytes (uint8_t debug_msg[17]) via memcpy, providing a length byte greater than 16 causes the function to write past the allocated stack boundary. This memory corruption can be triggered by a malicious or compromised sensor or bus participant, leading to a firmware crash, Denial of Service (DoS), or potentially the execution of arbitrary code via adjacent stack data corruption.