Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The `Toybox.Graphics.BufferedBitmap.initialize` API method in CIQ API version 2.3.0 through 4.1.7 does not validate its parameters, which can result in integer overflows when allocating the underlying bitmap buffer. A malicious application could call the API method with specially crafted parameters and hijack the execution of the device's firmware.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Connect IQ 输入验证错误漏洞
Vulnerability Description
Connect IQ(CIQ)是瑞士佳明(Garmin)的一项技术平台和生态系统,旨在扩展和定制其智能手表和健康追踪器的功能。 Connect IQ存在安全漏洞,该漏洞源于未验证API函数中的参数,从而导致整数溢出。
CVSS Information
N/A
Vulnerability Type
N/A