Vulnerability index

Browse CVEs

168 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Zephyr HIGH 7.8
CVE-2021-3434

Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https:…

Fix: 2.6.0+
Fix from $1,950 2022-06-28
Zephyr HIGH 7.5
CVE-2021-3430

Assertion reachable with repeated LL_CONNECTION_PARAM_REQ. Zephyr versions >= v1.14 contain Reachable Assertion (CWE-617). For more information, see …

Fix: 2.6.0+
Fix from $1,950 2022-06-28
Zephyr HIGH 7.5
CVE-2021-3431

Assertion reachable with repeated LL_FEATURE_REQ. Zephyr versions >= v2.5.0 contain Reachable Assertion (CWE-617). For more information, see https://…

Fix: 2.6.0+
Fix from $1,950 2022-06-28
Zephyr HIGH 7.5
CVE-2021-3432

Invalid interval in CONNECT_IND leads to Division by Zero. Zephyr versions >= v1.14.0 Divide By Zero (CWE-369). For more information, see https://git…

Fix: 2.6.0+
Fix from $1,950 2022-06-28
Zephyr HIGH 8.8
CVE-2021-3835

Buffer overflow in usb device class. Zephyr versions >= v2.6.0 contain Heap-based Buffer Overflow (CWE-122). For more information, see https://github…

Fix: 2.7.1+
Fix from $1,950 2022-02-07
Zephyr MEDIUM 6.8
CVE-2021-3861

The RNDIS USB device class includes a buffer overflow vulnerability. Zephyr versions >= v2.6.0 contain Heap-based Buffer Overflow (CWE-122). For more…

Fix: after 2.7.1
Fix from $1,600 2022-02-07
Zephyr HIGH 7.5
CVE-2021-3454

Truncated L2CAP K-frame causes assertion failure. Zephyr versions >= 2.4.0, >= v.2.50 contain Improper Handling of Length Parameter Inconsistency (CW…

Fix: 2.6.0+
Fix from $1,950 2021-10-19
Zephyr HIGH 7.5
CVE-2021-3455

Disconnecting L2CAP channel right after invalid ATT request leads freeze. Zephyr versions >= 2.4.0, >= 2.5.0 contain Use After Free (CWE-416). For mo…

Fix: 2.6.0+
Fix from $1,950 2021-10-19
Zephyr CRITICAL 9.8
CVE-2021-3323

Integer Underflow in 6LoWPAN IPHC Header Uncompression in Zephyr. Zephyr versions >= >=2.4.0 contain Integer Underflow (Wrap or Wraparound) (CWE-191)…

Fix: 2.5.0+
Fix from $2,300 2021-10-12
Zephyr HIGH 8.8
CVE-2021-3330

RCE/DOS: Linked-list corruption leading to large out-of-bounds write while sorting for forged fragment list in Zephyr. Zephyr versions >= >=2.4.0 con…

Fix: 2.5.0+
Fix from $1,950 2021-10-12
Zephyr MEDIUM 6.5
CVE-2021-3322

Unexpected Pointer Aliasing in IEEE 802154 Fragment Reassembly in Zephyr. Zephyr versions >= >=2.4.0 contain NULL Pointer Dereference (CWE-476). For …

Fix: 2.5.0+
Fix from $1,600 2021-10-12
Zephyr HIGH 8.8
CVE-2021-3321

Integer Underflow in Zephyr in IEEE 802154 Fragment Reassembly Header Removal. Zephyr versions >= >=2.4.0 contain Integer Overflow to Buffer Overflow…

Fix: 2.5.0+
Fix from $1,950 2021-10-12
Zephyr CRITICAL 9.8
CVE-2021-3319

DOS: Incorrect 802154 Frame Validation for Omitted Source / Dest Addresses. Zephyr versions >= > v2.4.0 contain NULL Pointer Dereference (CWE-476), A…

Fix: 2.5.0+
Fix from $2,300 2021-10-05
Zephyr CRITICAL 9.8
CVE-2021-3625

Buffer overflow in Zephyr USB DFU DNLOAD. Zephyr versions >= v2.5.0 contain Heap-based Buffer Overflow (CWE-122). For more information, see https://g…

Fix: 2.7.0+
Fix from $2,300 2021-10-05
Zephyr HIGH 8.8
CVE-2021-3581

Buffer Access with Incorrect Length Value in zephyr. Zephyr versions >= >=2.5.0 contain Buffer Access with Incorrect Length Value (CWE-805). For more…

Fix: 2.6.0+
Fix from $1,950 2021-10-05
Zephyr HIGH 7.5
CVE-2021-3510

Zephyr JSON decoder incorrectly decodes array of array. Zephyr versions >= >1.14.0, >= >2.5.0 contain Attempt to Access Child of a Non-structure Poin…

Patch available
Fix from $1,950 2021-10-05
Zephyr MEDIUM 6.5
CVE-2021-3436

BT: Possible to overwrite an existing bond during keys distribution phase when the identity address of the bond is known. Zephyr versions >= 1.14.2, …

Patch available
Fix from $1,600 2021-10-05
Zephyr HIGH 7.5
CVE-2021-3320

Type Confusion in 802154 ACK Frames Handling. Zephyr versions >= v2.4.0 contain NULL Pointer Dereference (CWE-476). For more information, see https:/…

Fix: after 2.4.0
Fix from $1,950 2021-05-25
Zephyr CRITICAL 9.8
CVE-2020-10064

Improper Input Frame Validation in ieee802154 Processing. Zephyr versions >= v1.14.2, >= v2.2.0 contain Stack-based Buffer Overflow (CWE-121), Heap-b…

Fix: after 2.2.0
Fix from $2,300 2021-05-25
Zephyr CRITICAL 9.8
CVE-2020-13601

Possible read out of bounds in dns read. Zephyr versions >= 1.14.2, >= 2.3.0 contain Out-of-bounds Read (CWE-125). For more information, see https://…

Fix: after 2.3.0
Fix from $2,300 2021-05-25
Zephyr HIGH 8.8
CVE-2020-10065

Missing Size Checks in Bluetooth HCI over SPI. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Length Parameter Inconsistency (CWE…

Fix: after 2.2.0
Fix from $1,950 2021-05-25
Zephyr HIGH 7.8
CVE-2020-13598

FS: Buffer Overflow when enabling Long File Names in FAT_FS and calling fs_stat. Zephyr versions >= v1.14.2, >= v2.3.0 contain Stack-based Buffer Ove…

Fix: after 2.3.0
Fix from $1,950 2021-05-25
Zephyr HIGH 7.8
CVE-2020-13603

Integer Overflow in memory allocating functions. Zephyr versions >= 1.14.2, >= 2.4.0 contain Integer Overflow or Wraparound (CWE-190). For more infor…

Fix: after 2.2.0
Fix from $1,950 2021-05-25
Zephyr HIGH 7.6
CVE-2020-13600

Malformed SPI in response for eswifi can corrupt kernel memory. Zephyr versions >= 1.14.2, >= 2.3.0 contain Heap-based Buffer Overflow (CWE-122). For…

Fix: after 2.3.0
Fix from $1,950 2021-05-25
Zephyr MEDIUM 6.5
CVE-2020-10069

Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Parameters (C…

Fix: after 2.2.0
Fix from $1,600 2021-05-25
Zephyr MEDIUM 5.7
CVE-2020-10066

Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (CWE-476). For more informatio…

Fix: after 2.2.0
Fix from $1,600 2021-05-25
Zephyr MEDIUM 5.5
CVE-2020-13602

Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation (CWE-20), Loop with Unreacha…

Fix: after 2.2.0
Fix from $1,600 2021-05-25
Zephyr MEDIUM 5.3
CVE-2020-10072

Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Insufficien…

Fix: after 2.2.0
Fix from $1,600 2021-05-25
Zephyr CRITICAL 9.8
CVE-2020-10071

The Zephyr MQTT parsing code performs insufficient checking of the length field on publish messages, allowing a buffer overflow and potentially remot…

Fix: after 2.2.0
Fix from $2,300 2020-06-05
Zephyr CRITICAL 9.8
CVE-2020-10062

An off-by-one error in the Zephyr project MQTT packet length decoder can result in memory corruption and possible remote code execution. NCC-ZEP-031 …

Fix: after 2.2.0
Fix from $2,300 2020-06-05