Zephyr是Zephyr开源的一个可扩展的实时操作系统 (RTOS)。 Zephyr存在安全漏洞,该漏洞源于BLE连接响应处理函数未验证响应是否预期,仅依赖标识符匹配。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| zephyrproject-rtos | Zephyr | * ~ 4.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-7403 | 7.6 HIGH | Bluetooth: bt_conn_tx_processor unsafe handling |
| CVE-2025-10458 | 7.6 HIGH | Bluetooth: le_conn_rsp does not sanitize CID, MTU, MPS values |
| CVE-2025-10456 | 7.1 HIGH | Bluetooth: Semi-Arbitrary ability to make the BLE Target send disconnection requests |
No comments yet