Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

zephyr — Vulnerabilities & Security Advisories 218

All 218 CVE vulnerabilities found in zephyr, with AI-generated Chinese analysis, references, and POCs.

This page documents known vulnerabilities in Zephyr, an open-source real-time operating system for resource-constrained embedded systems, categorized under common weakness types such as buffer overflows and improper input validation. The collection includes security advisories, flaw reports, and associated technical details ranging from initial public disclosures through to recent updates in the current development cycle, ensuring coverage of both legacy issues and newly identified risks within the Zephyr codebase and its associated components. By reviewing this aggregation, you can track vendor advisories for Zephyr to stay informed about critical patches and mitigation strategies, gain a deeper understanding of specific weakness classes that frequently affect embedded RTOS environments, and investigate a product’s vulnerability history to assess long-term security trends and patch responsiveness. This resource is designed to assist security researchers, developers, and system integrators in evaluating the security posture of Zephyr-based deployments, identifying potential attack surfaces, and aligning internal security protocols with upstream fixes. It serves as a centralized reference for correlating reported flaws with their underlying causes and recommended remediations, facilitating more robust risk management decisions for projects relying on this operating system.

Vendor: zephyrproject-rtos

CVE ID Title CVSS Severity Published
CVE-2023-4264 Potential buffer overflow vulnerabilities in the Zephyr Bluetooth subsystem CWE-120 7.1 High 2023-09-26
CVE-2023-4259 Potential buffer overflow vulnerabilities in the Zephyr eS-WiFi driver CWE-120 7.1 High 2023-09-25
CVE-2023-4258 bt: mesh: vulnerability in provisioning protocol implementation on provisionee side CWE-684 8.6 High 2023-09-25
CVE-2023-4265 Buffer overflow in Zephyr USB CWE-120 6.4 Medium 2023-08-12
CVE-2023-1901 HCI send_sync Dangling Semaphore Reference Re-use 5.9 Medium 2023-07-10
CVE-2023-2234 BT HCI host union variant confusion CWE-843 6.8 Medium 2023-07-10
CVE-2023-1902 HCI Connection Creation Dangling State Reference Re-use 5.9 Medium 2023-07-10
CVE-2023-0359 ipv6: Missing ipv6 nullptr-check in handle_ra_input CWE-20 5.9 Medium 2023-07-10
CVE-2023-0779 net: shell: Improper input validation CWE-20 6.7 Medium 2023-05-30
CVE-2021-3329 DOS: Incorrect handling of the initial HCI ACL_MTU handshake packet leads to crash of bluetooth host layer CWE-703 9.6 Critical 2023-02-26
CVE-2022-3806 Bluetooth HCI Error Handling Double Free CWE-415 9.8 - 2023-01-19
CVE-2023-0396 Buffer Overreads in Bluetooth HCI CWE-126 8.8 - 2023-01-19
CVE-2023-0397 DoS: Invalid Initialization in le_read_buffer_size_complete CWE-703 9.6 Critical 2023-01-19
CVE-2021-3966 Usb bluetooth device ACL read cb buffer overflow CWE-122 9.6 Critical 2023-01-11
CVE-2022-0553 Possible to retrieve uncrypted firmware image CWE-200 6.5 Medium 2023-01-11
CVE-2022-2993 bt: host: Wrong key validation check 8.6 High 2022-12-12
CVE-2022-2741 can: denial-of-service can be triggered by a crafted CAN frame CWE-400 8.2 High 2022-10-31
CVE-2022-1841 Out-of-bound write in tcp_flags CWE-787 7.2 High 2022-08-31
CVE-2022-1042 Out-of-bound write vulnerability in the Bluetooth mesh core stack can be triggered during provisioning CWE-787 8.2 High 2022-07-26
CVE-2022-1041 Out-of-bound write vulnerability in the Bluetooth mesh core stack can be triggered during provisioning CWE-787 8.2 High 2022-07-26
CVE-2021-3435 L2CAP: Information leakage in le_ecred_conn_req() CWE-908 4.0 Medium 2022-06-28
CVE-2021-3434 L2CAP: Stack based buffer overflow in le_ecred_conn_req() CWE-121 4.9 Medium 2022-06-28
CVE-2021-3433 BT: Invalid channel map in CONNECT_IND results to Deadlock CWE-703 4.0 Medium 2022-06-28
CVE-2021-3432 BT: Invalid interval in CONNECT_IND leads to Division by Zero CWE-369 4.3 Medium 2022-06-28
CVE-2021-3431 BT: Assertion failure on repeated LL_FEATURE_REQ CWE-617 4.3 Medium 2022-06-28
CVE-2021-3430 BT: Assertion failure on repeated LL_CONNECTION_PARAM_REQ CWE-617 6.5 Medium 2022-06-28
CVE-2021-3861 The RNDIS USB device class includes a buffer overflow vulnerability CWE-122 8.2 High 2022-02-07
CVE-2021-3835 Buffer overflow in usb device class CWE-122 8.2 High 2022-02-07
CVE-2021-3454 Truncated L2CAP K-frame causes assertion failure CWE-130 4.3 Medium 2021-10-19
CVE-2021-3455 Disconnecting L2CAP channel right after invalid ATT request leads freeze CWE-416 4.3 Medium 2021-10-19

All 218 known CVE vulnerabilities affecting zephyr with full Chinese analysis, references, and POCs where available.