« Volver al listado

CVE-2026-46532

Estado: AnalizadaMedia (4.6)—

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.3, and 6.0, an out-of-bounds read exists in the BlueDroid AVRCP vendor-command parser (avrc_pars_vendor_cmd() in components/bt/host/bluedroid/stack/avrc/avrc_pars_tg.c). This issue has been patched in versions 5.2.7, 5.3.6, 5.4.5, 5.5.4, and 6.0.1.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-46532",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2026-46532",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2026-06-10T16:10:22.862024Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security-advisories@github.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 4.6,
          "attackVector": "ADJACENT_NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "LOW",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 2.5,
        "exploitabilityScore": 2.1
      }
    ]
  },
  "affected": [
    {
      "source": "security-advisories@github.com",
      "affectedData": [
        {
          "vendor": "espressif",
          "product": "esp-idf",
          "versions": [
            {
              "status": "affected",
              "version": "= 5.2.6"
            },
            {
              "status": "affected",
              "version": "= 5.3.5"
            },
            {
              "status": "affected",
              "version": "= 5.4.4"
            },
            {
              "status": "affected",
              "version": "= 5.5.3"
            },
            {
              "status": "affected",
              "version": "= 6.0"
            }
          ]
        }
      ]
    }
  ],
  "published": "2026-06-10T02:16:33.287",
  "references": [
    {
      "url": "https://github.com/espressif/esp-idf/commit/56053c4d1f37955ccf296cf2f6dfd0f7ebd4fae6",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/commit/60f9362f83a05942069532f357c234cd5e5d4302",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/commit/7c004d3fe3022f5f0db98dd1b2d0648a3a9cfb3f",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/commit/8746e5f7e762ead84d2902edec34d84cdd701b2b",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/commit/b0959b5ab1dc60398a916c80f14b1816780c801e",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/commit/c53d05ae526607ca5eae9ffedaf57775eec33a4f",
      "tags": [
        "Patch"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/espressif/esp-idf/security/advisories/GHSA-3pp8-42fh-3j3c",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "security-advisories@github.com"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security-advisories@github.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-125"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.3, and 6.0, an out-of-bounds read exists in the BlueDroid AVRCP vendor-command parser (avrc_pars_vendor_cmd() in components/bt/host/bluedroid/stack/avrc/avrc_pars_tg.c). This issue has been patched in versions 5.2.7, 5.3.6, 5.4.5, 5.5.4, and 6.0.1."
    },
    {
      "lang": "es",
      "value": "ESF-IDF es el framework de desarrollo de Espressif para el internet de las cosas (IoT). En las versiones 5.2.6, 5.3.5, 5.4.4, 5.5.3 y 6.0, existe una lectura fuera de límites (out-of-bounds read) en el analizador de comandos de proveedor BlueDroid AVRCP (avrc_pars_vendor_cmd() en components/bt/host/bluedroid/stack/avrc/avrc_pars_tg.c). Este problema ha sido parcheado en las versiones 5.2.7, 5.3.6, 5.4.5, 5.5.4 y 6.0.1."
    }
  ],
  "lastModified": "2026-07-23T09:10:00.113",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:espressif:esp-idf:5.2.6:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "37A040C2-E9D4-4678-9A10-74B5AEE4901D"
            },
            {
              "criteria": "cpe:2.3:a:espressif:esp-idf:5.3.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "662FF5D0-F1CA-46B6-B574-46B2B1AE0C27"
            },
            {
              "criteria": "cpe:2.3:a:espressif:esp-idf:5.4.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AFFE1121-2E19-45C4-A597-35E029748C99"
            },
            {
              "criteria": "cpe:2.3:a:espressif:esp-idf:5.5.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "EE942AF7-49E7-4DEE-AA94-CFB8385BD52A"
            },
            {
              "criteria": "cpe:2.3:a:espressif:esp-idf:6.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F9D5D616-4CBC-480A-A7CF-4B80D7D3FA17"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security-advisories@github.com"
}