Vulnerabilities > Zephyrproject > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-25 | CVE-2020-10069 | Unspecified vulnerability in Zephyrproject Zephyr Zephyr Bluetooth unchecked packet data results in denial of service. low complexity zephyrproject | 6.5 |
2021-05-25 | CVE-2020-10072 | Unspecified vulnerability in Zephyrproject Zephyr Improper Handling of Insufficient Permissions or Privileges in zephyr. | 5.3 |
2021-05-25 | CVE-2020-13602 | Infinite Loop vulnerability in Zephyrproject Zephyr Remote Denial of Service in LwM2M do_write_op_tlv. | 5.5 |
2020-06-05 | CVE-2020-10068 | Improper Input Validation vulnerability in Zephyrproject Zephyr In the Zephyr project Bluetooth subsystem, certain duplicate and back-to-back packets can cause incorrect behavior, resulting in a denial of service. | 6.5 |
2020-05-11 | CVE-2020-10060 | Access of Uninitialized Pointer vulnerability in Zephyrproject Zephyr 2.1.0/2.2.0/2.3.0 In updatehub_probe, right after JSON parsing is complete, objects\[1] is accessed from the output structure in two different places. | 6.5 |
2020-05-11 | CVE-2020-10059 | Improper Certificate Validation vulnerability in Zephyrproject Zephyr 2.1.0/2.2.0 The UpdateHub module disables DTLS peer checking, which allows for a man in the middle attack. | 4.8 |
2020-05-11 | CVE-2020-10023 | Classic Buffer Overflow vulnerability in Zephyrproject Zephyr 1.14.1/2.1.0 The shell subsystem contains a buffer overflow, whereby an adversary with physical access to the device is able to cause a memory corruption, resulting in denial of service or possibly code execution within the Zephyr kernel. | 6.8 |