Vulnerabilities > Zephyrproject > Zephyr > 1.0.0

DATE CVE VULNERABILITY TITLE RISK
2020-05-11 CVE-2020-10019 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
USB DFU has a potential buffer overflow where the requested length (wLength) is not checked against the buffer size.
local
low complexity
zephyrproject CWE-120
4.6
2019-08-29 CVE-2017-14202 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Zephyrproject Zephyr
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the shell component of Zephyr allows a serial or telnet connected user to cause a crash, possibly with arbitrary code execution.
local
low complexity
zephyrproject CWE-119
4.6
2019-08-29 CVE-2017-14201 Use After Free vulnerability in Zephyrproject Zephyr
Use After Free vulnerability in the Zephyr shell allows a serial or telnet connected user to cause denial of service, and possibly remote code execution.
local
low complexity
zephyrproject CWE-416
4.6