Zephyr是Zephyr开源的一个可扩展的实时操作系统 (RTOS)。 Zephyr存在安全漏洞,该漏洞源于使用IPPROTO_TLS_1_3创建的套接字在启用两种TLS版本时仍可协商TLS 1.2连接,因为套接字级别的协议选择未传播到mbedTLS,可能导致应用程序静默使用TLS 1.2并暴露于TLS 1.2特定弱点。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| zephyrproject-rtos | Zephyr | *≤ 4.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| zephyrproject-rtos | Zephyr | * ~ 4.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet