In ConnMan through 1.41, remote attackers able to send HTTP requests to the gweb component are able to exploit a heap-based buffer overflow in received_data to execute code.
https://www.debian.org/security/2022/dsa-5231
https://security.gentoo.org/glsa/202310-21
https://lore.kernel.org/connman/20220801080043.4861-5-wagi%40monom.org/