zephyrproject zephyr是zephyrproject组织开源的一个面向物联网设备的实时操作系统。 zephyrproject zephyr 3.5.0版本至4.4.1之前版本存在缓冲区错误漏洞,该漏洞源于tls_opt_dtls_peer_connection_id_value_get()函数未验证缓冲区大小,将调用者提供的optval直接传递给mbedtls_ssl_get_peer_cid(),可能导致内核堆缓冲区溢出。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| zephyrproject | zephyr | 3.5.0< 4.4.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| zephyrproject | zephyr | 3.5.0 ~ 4.4.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-11810 | 7.5 HIGH | NULL-pointer dereference in UpdateHub OTA agent on empty inner metadata array (remote DoS) |
| CVE-2026-11809 | 3.7 LOW | UpdateHub probe: uninitialized-heap out-of-bounds read of network-supplied metadata |
| CVE-2026-11811 | 3.7 LOW | Socket file-descriptor leak in UpdateHub OTA client start_coap_client() leading to resourc |
| CVE-2026-11812 | 2.5 LOW | UpdateHub: race condition on shared context causes out-of-bounds write and DoS |
No comments yet