zephyrproject zephyr是zephyrproject组织开源的一个面向物联网设备的实时操作系统。 zephyrproject zephyr 4.4.0至4.5.0之前版本存在异常处理不当漏洞,该漏洞源于USB DFU类实现中的handle_download()函数在处理DFU_DNLOAD下载请求时未检查buf指针是否为空,直接计算MIN(setup->wLength, buf->len)并传递buf->data,导致空指针解引用,可能造成设备崩溃或重置,导致拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| zephyrproject | zephyr | 4.4.0< 4.4.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| zephyrproject | zephyr | 4.4.0 ~ 4.4.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-11893 | 5.9 MEDIUM | Double free / use-after-free in Bouffalo Lab HCI driver send() error paths (hci_bflb) |
| CVE-2026-11894 | 5.9 MEDIUM | Double-free / use-after-free in Realtek BEE Bluetooth HCI driver `send()` error paths |
| CVE-2026-12052 | 5.2 MEDIUM | Out-of-bounds write in USB CDC NCM control handler when host wLength is smaller than the r |
| CVE-2026-11985 | 3.6 LOW | Cross-thread FPU register leak on ARM when FPU enabled without register sharing |
No comments yet