zephyrproject
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 190 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 6, 2018 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Out-of-bounds read in PTP management TLV TIME parsing in Zephyr net PTP
Out-of-bounds read in LoRaWAN fragmented data block transport (FUOTA) downlink handler
Out-of-bounds read in LoRaWAN clock-sync AppTimeAns downlink handler
Use-after-free in Bluetooth host ATT TX completion on disconnect mid-transfer
Heap out-of-bounds write in Zephyr hawkBit OTA client when terminating server response body
Out-of-bounds read in Zephyr OCPP 1.6 RPC message parser (parse_rpc_msg)
PSA key-slot leak in Bluetooth Mesh subnet deletion leading to resource-exhaustion DoS
Out-of-bounds read in DHCPv4 client message-type name lookup (net_dhcpv4_msg_type_name)
Bluetooth GATT notify/indicate enforces the wrong attribute's permissions, bypassing encryption/authentication requirements on characteristic values
Missing hop-limit decrement on IPv6 forwarding path allows unbounded packet looping (DoS) in Zephyr routers
Monitor zephyrproject in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.