Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
293 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.3% | — | Zephyrproject Zephyr | 6/10/2023 | 17/6/2026 | Potential buffer overflow vulnerability in the Zephyr CAN bus subsystem | |
| Modificada | Alta (8.8) | 0.42% | — | Zephyrproject Zephyr | 27/9/2023 | 17/6/2026 | Two potential signed to unsigned conversion errors and buffer overflow vulnerabilities at the following locations in the Zephyr IPM drivers. | |
| Modificada | Crítica (9.6) | 1.1% | — | Zephyrproject Zephyr | 27/9/2023 | 17/6/2026 | Potential buffer overflow vulnerabilities n the Zephyr Bluetooth subsystem. | |
| Modificada | Crítica (10) | 0.87% | — | Zephyrproject Zephyr | 27/9/2023 | 17/6/2026 | Potential off-by-one buffer overflow vulnerability in the Zephyr fuse file system. | |
| Modificada | Alta (8.8) | 0.83% | — | Zephyrproject Zephyr | 26/9/2023 | 17/6/2026 | Two potential buffer overflow vulnerabilities at the following locations in the Zephyr eS-WiFi driver source code. | |
| Modificada | Media (6.5) | 0.57% | — | Zephyrproject Zephyr | 25/9/2023 | 17/6/2026 | In Bluetooth mesh implementation If provisionee has a public key that is sent OOB then during provisioning it can be sent back and will be accepted by provisionee. | |
| Modificada | Media (6.8) | 0.83% | — | Zephyrproject Zephyr | 12/8/2023 | 17/6/2026 | Potential buffer overflow vulnerabilities in the following locations: https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359 https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359… | |
| Modificada | Alta (8.8) | 0.50% | — | Zephyrproject Zephyr | 10/7/2023 | 17/6/2026 | Union variant confusion allows any malicious BT controller to execute arbitrary code on the Zephyr host. | |
| Modificada | Alta (8) | 0.60% | — | Zephyrproject Zephyr | 10/7/2023 | 17/6/2026 | The bluetooth HCI host layer logic not clearing a global reference to a state pointer after handling connection events may allow a malicious HCI Controller to cause the use of a dangling reference in the host layer, leading to a crash (DoS) or potential RCE on the Host layer. | |
| Modificada | Alta (8) | 0.60% | — | Zephyrproject Zephyr | 10/7/2023 | 17/6/2026 | The bluetooth HCI host layer logic not clearing a global reference to a semaphore after synchronously sending HCI commands may allow a malicious HCI Controller to cause the use of a dangling reference in the host layer, leading to a crash (DoS) or potential RCE on the Host layer. | |
| Modificada | Alta (7.5) | 0.89% | — | Zephyrproject Zephyr | 10/7/2023 | 17/6/2026 | A missing nullptr-check in handle_ra_input can cause a nullptr-deref. | |
| Modificada | Alta (8.8) | 0.25% | — | Zephyr Project Manager Project Zephyr Project Manager | 19/6/2023 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Dylan James Zephyr Project Manager plugin <= 3.3.93 versions. | |
| Modificada | Alta (7.7) | 0.52% | — | Zephyrproject Zephyr | 30/5/2023 | 17/6/2026 | At the most basic level, an invalid pointer can be input that crashes the device, but with more knowledge of the device’s memory layout, further exploitation is possible. | |
| Modificada | Alta (7.5) | 0.60% | — | Smartbear Zephyr Enterprise | 8/3/2023 | 17/6/2026 | There exists an information disclosure vulnerability in SmartBear Zephyr Enterprise through 7.15.0 that could be exploited by unauthenticated users to read arbitrary files from Zephyr instances. | |
| Modificada | Alta (8.1) | 0.51% | — | Smartbear Zephyr Enterprise | 8/3/2023 | 17/6/2026 | There exists a privilege escalation vulnerability in SmartBear Zephyr Enterprise through 7.15.0 that could be exploited by authorized users to reset passwords for other accounts. | |
| Modificada | Alta (7.5) | 0.64% | — | Smartbear Zephyr Enterprise | 8/3/2023 | 17/6/2026 | SmartBear Zephyr Enterprise through 7.15.0 allows unauthenticated users to upload large files, which could exhaust the local drive space, causing a denial of service condition. | |
| Modificada | Crítica (9.8) | 1.3% | — | Smartbear Zephyr Enterprise | 8/3/2023 | 17/6/2026 | SmartBear Zephyr Enterprise through 7.15.0 mishandles user-defined input during report generation. This could lead to remote code execution by unauthenticated users. | |
| Modificada | Media (6.5) | 0.62% | — | Zephyrproject Zephyr | 26/2/2023 | 17/6/2026 | Lack of proper validation in HCI Host stack initialization can cause a crash of the bluetooth stack | |
| Modificada | Media (6.8) | 0.43% | — | Zephyrproject Zephyr | 25/1/2023 | 17/6/2026 | A malicious / defective bluetooth controller can cause buffer overreads in the most functions that process HCI command responses. | |
| Modificada | Crítica (9.8) | 1.0% | — | Zephyrproject Zephyr | 25/1/2023 | 17/6/2026 | Inconsistent handling of error cases in bluetooth hci may lead to a double free condition of a network buffer. | |
| Modificada | Media (6.5) | 0.47% | — | Zephyrproject Zephyr | 19/1/2023 | 17/6/2026 | A malicious / defect bluetooth controller can cause a Denial of Service due to unchecked input in le_read_buffer_size_complete. | |
| Modificada | Alta (8.8) | 0.49% | — | Zephyrproject Zephyr | 11/1/2023 | 17/6/2026 | usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem. | |
| Modificada | Media (4.6) | 0.28% | — | Zephyrproject Zephyr | 11/1/2023 | 17/6/2026 | There is no check to see if slot 0 is being uploaded from the device to the host. When using encrypted images this means the unencrypted firmware can be retrieved easily. | |
| Modificada | Crítica (9.8) | 0.57% | — | Zephyrproject Zephyr | 9/12/2022 | 17/6/2026 | There is an error in the condition of the last if-statement in the function smp_check_keys. It was rejecting current keys if all requirements were unmet. | |
| Modificada | Alta (7.5) | 0.64% | — | Zephyrproject Zephyr | 31/10/2022 | 17/6/2026 | The denial-of-service can be triggered by transmitting a carefully crafted CAN frame on the same CAN network as the vulnerable node. The frame must have a CAN ID matching an installed filter in the vulnerable node (this can easily be guessed based on CAN traffic analyses). The frame must contain the opposite RTR bit… |