Vulnerabilidades em zephyrproject-rtos

127 resultados
Análise Vexday

O ecossistema Zephyr RTOS acumula 130 CVEs catalogadas, das quais 13 são de severidade crítica e 13 surgiram nos últimos 90 dias, indicando um ritmo de descoberta que merece acompanhamento contínuo, especialmente em ambientes embarcados onde ciclos de atualização tendem a ser mais longos. A taxa de exploração ativa está abaixo da média geral do catálogo, com zero entradas no CISA KEV e EPSS máximo de 0,034, sugerindo baixo interesse de agentes de ameaça no momento — embora isso não elimine o risco operacional. O tipo de falha mais prevalente é CWE-120 (buffer overflow clássico), historicamente associado a impactos de alta gravidade em sistemas com restrições de memória, como os alvos típicos do Zephyr. A CVE mais relevante no momento é CVE-2020-10071, que, combinada à existência de pelo menos um PoC público no conjunto total, reforça a necessidade de validar patches aplicados e monitorar a superfície de ataque em dispositivos IoT e sistemas embarcados baseados nesta plataforma.

CVE-2023-5753MEDIUMPotential buffer overflow vulnerabilities in the Zephyr Bluetooth subsystemEPSS 0.9%CVE-2022-1041HIGHOut-of-bound write vulnerability in the Bluetooth mesh core stack can be triggered during provisioningEPSS 0.9%CVE-2021-3430MEDIUMBT: Assertion failure on repeated LL_CONNECTION_PARAM_REQEPSS 0.9%CVE-2021-3431MEDIUMBT: Assertion failure on repeated LL_FEATURE_REQEPSS 0.9%CVE-2021-3432MEDIUMBT: Invalid interval in CONNECT_IND leads to Division by ZeroEPSS 0.9%CVE-2021-3320MEDIUMType Confusion in 802154 ACK Frames HandlingEPSS 0.8%CVE-2020-10064HIGHImproper Input Frame Validation in ieee802154 ProcessingEPSS 0.8%CVE-2022-1042HIGHOut-of-bound write vulnerability in the Bluetooth mesh core stack can be triggered during provisioningEPSS 0.8%CVE-2023-4265MEDIUMBuffer overflow in Zephyr USBEPSS 0.8%CVE-2023-4260MEDIUMPotential off-by-one buffer overflow vulnerability in the Zephyr FS subsystemEPSS 0.8%CVE-2023-5055HIGHL2CAP: Possible Stack based buffer overflow in le_ecred_reconf_req()EPSS 0.8%CVE-2021-3835HIGHBuffer overflow in usb device classEPSS 0.7%CVE-2021-3321HIGHInteger Underflow in Zephyr in IEEE 802154 Fragment Reassembly Header RemovalEPSS 0.7%CVE-2023-4259HIGHPotential buffer overflow vulnerabilities in the Zephyr eS-WiFi driverEPSS 0.7%CVE-2020-10024HIGHARM Platform Uses Signed Integer Comparison When Validating Syscall NumbersEPSS 0.7%CVE-2020-10027HIGHARC Platform Uses Signed Integer Comparison When Validating Syscall NumbersEPSS 0.7%CVE-2026-5067CRITICALOut-of-bounds read/write in HTTP WebSocket upgrade via non-null-terminated Sec-WebSocket-KeyEPSS 0.6%CVE-2021-3329CRITICALDOS: Incorrect handling of the initial HCI ACL_MTU handshake packet leads to crash of bluetooth host layerEPSS 0.6%CVE-2024-6259HIGHBT: HCI: adv_ext_report Improper discarding in adv_ext_reportEPSS 0.6%CVE-2024-6443MEDIUMzephyr: out-of-bound read in utf8_truncEPSS 0.6%