Vulnerabilities in zephyrproject-rtos

127 results
Vexday analysis

O ecossistema Zephyr RTOS acumula 130 CVEs catalogadas, das quais 13 são de severidade crítica e 13 surgiram nos últimos 90 dias, indicando um ritmo de descoberta que merece acompanhamento contínuo, especialmente em ambientes embarcados onde ciclos de atualização tendem a ser mais longos. A taxa de exploração ativa está abaixo da média geral do catálogo, com zero entradas no CISA KEV e EPSS máximo de 0,034, sugerindo baixo interesse de agentes de ameaça no momento — embora isso não elimine o risco operacional. O tipo de falha mais prevalente é CWE-120 (buffer overflow clássico), historicamente associado a impactos de alta gravidade em sistemas com restrições de memória, como os alvos típicos do Zephyr. A CVE mais relevante no momento é CVE-2020-10071, que, combinada à existência de pelo menos um PoC público no conjunto total, reforça a necessidade de validar patches aplicados e monitorar a superfície de ataque em dispositivos IoT e sistemas embarcados baseados nesta plataforma.

CVE-2024-3077MEDIUMBluetooth: integer underflow in gatt_find_info_rspEPSS 0.5%CVE-2023-4258HIGHbt: mesh: vulnerability in provisioning protocol implementation on provisionee sideEPSS 0.5%CVE-2024-4785HIGHBT: Missing Check in LL_CONNECTION_UPDATE_IND Packet Leads to Division by ZeroEPSS 0.5%CVE-2026-5068HIGHbt: l2cap le coc: remote oob write via seg counter stored in net_buf user_dataEPSS 0.5%CVE-2020-10019HIGHBuffer Overflow in USB DFU requested lengthEPSS 0.5%CVE-2023-5563HIGHThe SJA1000 CAN controller driver backend automatically attempt to recover from a bus-off event when built with CONFIG_CAN_AUTO_BUS_OFF_RECOEPSS 0.4%CVE-2024-5931MEDIUMBT: Unchecked user input in bap_broadcast_assistantEPSS 0.4%CVE-2020-10067HIGHInteger Overflow In is_in_region Allows User Thread To Access Kernel MemoryEPSS 0.4%CVE-2024-3332MEDIUMbt: host/smp: DoS caused by null pointer dereferenceEPSS 0.4%CVE-2023-6249HIGHipm: signed to unsigned conversion problem in esp32_ipm_sendEPSS 0.4%CVE-2023-6749HIGHUnchecked user input length in the Zephyr Settings ShellEPSS 0.4%CVE-2023-6881HIGHfs: fuse: buffer overflow vulnerability in the Zephyr FSEPSS 0.4%CVE-2024-6135HIGHBT:Classic: Multiple missing buf length checksEPSS 0.4%CVE-2023-5779MEDIUMcan: out of bounds in remove_rx_filter functionEPSS 0.4%CVE-2024-6258MEDIUMBT: Missing length checks of net_buf in rfcomm_handle_dataEPSS 0.4%CVE-2023-5139MEDIUMPotential buffer overflow vulnerability in the Zephyr STM32 Crypto driverEPSS 0.4%CVE-2023-0396MEDIUMBuffer Overreads in Bluetooth HCIEPSS 0.4%CVE-2020-10021HIGHOut-of-bounds write in USB Mass Storage with unaligned sizesEPSS 0.4%CVE-2024-8798HIGHBluetooth: classic: avdtp: missing buffer length checkEPSS 0.4%CVE-2020-10058HIGHMultiple Syscalls In kscan Subsystem Performs No Argument ValidationEPSS 0.4%