CVE-2024-5931
NixOS vulnerability analysis and mitigation

Overview

CVE-2024-5931 is a vulnerability discovered in the Zephyr Real-Time Operating System (RTOS) affecting versions up to and including 3.6.0. The vulnerability exists in the parse_recv_state function within subsys/bluetooth/audio/bap_broadcast_assistant.c, where unchecked user input in the bap_broadcast_assistant component can lead to a stack overflow condition. The issue was disclosed on September 13, 2024 (Zephyr Advisory).

Technical details

The vulnerability stems from insufficient validation of the recv_state->num_subgroups parameter, which is determined by user input through net_buf_simple_pull_u8(&buf). This value is directly used as an upper limit in a subsequent for loop without validation against CONFIG_BT_BAP_BASS_MAX_SUBGROUPS, potentially leading to a stack-based buffer overflow. The vulnerability has been assigned a CVSS v3.1 base score of 6.5 MEDIUM (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) by NIST, while the Zephyr Project assessed it at 6.3 MEDIUM (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L) (Zephyr Advisory).

Impact

The exploitation of this vulnerability could result in system instability or denial of service attacks. The vulnerability affects the system's stability and could potentially lead to a crash when the subgroup exceeds the bounds of the recv_state array (Zephyr Advisory).

Mitigation and workarounds

Patches have been developed and are available through pull requests #74062 for the main branch and #77966 for v3.6. Users are advised to apply these patches to address the vulnerability (Zephyr Advisory).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-69264CRITICAL9.8
  • JavaScriptJavaScript
  • pnpm
NoYesJan 07, 2026
CVE-2025-69263HIGH8.8
  • JavaScriptJavaScript
  • pnpm
NoYesJan 07, 2026
CVE-2025-69262HIGH7.8
  • JavaScriptJavaScript
  • pnpm
NoYesJan 07, 2026
CVE-2025-20807MEDIUM6.7
  • NixOSNixOS
  • android
NoNoJan 06, 2026
CVE-2026-21885MEDIUM6.5
  • NixOSNixOS
  • miniflux
NoYesJan 08, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management