Zephyr是Zephyr开源的一个可扩展的实时操作系统 (RTOS)。 Zephyr存在安全漏洞,该漏洞源于bt_conn_tx_processor处理不当导致释放后重用,可能造成内存损坏。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| zephyrproject-rtos | Zephyr | * ~ 4.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-10458 | 7.6 HIGH | Bluetooth: le_conn_rsp does not sanitize CID, MTU, MPS values |
| CVE-2025-10456 | 7.1 HIGH | Bluetooth: Semi-Arbitrary ability to make the BLE Target send disconnection requests |
| CVE-2025-10457 | 4.3 MEDIUM | Bluetooth: Out-Of-Context le_conn_rsp Handling |
No comments yet