CVE-2026-42808
Received Received - Intake

Buffer Overflow in Bosch Sensortec COINES SDK

Vulnerability report for CVE-2026-42808, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-10

Last updated on: 2026-09-10

Assigner: Robert Bosch GmbH

Description

An issue was discovered in Bosch Sensortec COINES_SDK versions 2.0 through 2.11.Β  The host streaming API function {{coines_read_stream_sensor_data()}} fails to validate the boundaries of the caller-provided destination buffer. Internally, the stream processing mechanism in {{comm_intf_process_stream_response()}} discards the requested {{number_of_samples}} argument and copies the entirety of the streaming ring buffer's accumulated data into {{coines_stream_rsp_buf}}. Subsequently, {{coines_read_stream_sensor_data()}} unconditionally executes a {{memcpy}} of the ring buffer size into the caller-provided buffer without verifying if the destination memory allocation is large enough. A malicious or compromised hardware board connected via USB or BLE can exploit this by streaming a high volume of sensor samples, causing a heap or stack-based buffer overflow on the host desktop environment. This can result in a Denial of Service (DoS) or potential arbitrary code execution on the host machine.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-10
Last Modified
2026-09-10
Generated
2026-09-10
AI Q&A
2026-09-10
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
bosch_sensortec coines_sdk From 2.0 (inc) to 2.11 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-120 The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability exists in Bosch Sensortec COINES_SDK versions 2.0 through 2.11. The host streaming API function coines_read_stream_sensor_data() does not check if the destination buffer provided by the caller is large enough to hold the incoming data. The function copies the entire streaming ring buffer's data into the destination buffer without validating its size, leading to a potential buffer overflow.

Detection Guidance

This vulnerability is specific to Bosch Sensortec COINES_SDK versions 2.0 through 2.11 and involves a buffer overflow in the host streaming API. Detection requires checking the installed version of COINES_SDK on your system. Use commands like 'pip show coines_sdk' or check the SDK installation directory for version information.

Impact Analysis

A malicious or compromised hardware board connected via USB or BLE can exploit this flaw by sending excessive sensor data. This can cause a heap or stack-based buffer overflow on the host machine, resulting in a Denial of Service (DoS) or even arbitrary code execution on the host system.

Mitigation Strategies

Immediately update COINES_SDK to the latest version beyond 2.11, as the issue is resolved in newer releases. If updating is not possible, restrict USB or BLE connections to trusted hardware boards only to prevent malicious exploitation.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-42808. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart