silabs kayıtları
silabs üreticisine ait 102 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 16
- Düzeltme kaydı olan
- %24,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read16
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer8
- CWE-14 Compiler Removal of Code to Clear Buffers8
- CWE-281 Improper Preservation of Permissions7
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')7
- CWE-122 Heap-based Buffer Overflow4
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
102 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2022-24942İstismar yok | Heap-based buffer overflow in MicriumOS HTTP Server allows potential remote code executionsilabs · micrium uc-http · CWE-122 | Kritik9,8 | — | %2,0 | 15 Kas 2022 |
40Planlayın | CVE-2023-27882İstismar yok | A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-122 | Kritik9,8 | — | %1,8 | 14 Kas 2023 |
40Planlayın | CVE-2023-45318İstismar yok | A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004.silabs · gecko software development kit · CWE-122 | Kritik9,8 | — | %1,7 | 20 Şub 2024 |
40Planlayın | CVE-2023-25181İstismar yok | A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-122 | Kritik9,8 | — | %1,7 | 14 Kas 2023 |
40Planlayın | CVE-2023-28379İstismar yok | A memory corruption vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-119 | Kritik9,8 | — | %1,7 | 14 Kas 2023 |
40Planlayın | CVE-2023-31247İstismar yok | A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-119 | Kritik9,8 | — | %1,7 | 14 Kas 2023 |
39İzleyin | CVE-2023-28391İstismar yok | A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-119 | Kritik9,8 | — | %1,5 | 14 Kas 2023 |
39İzleyin | CVE-2023-24585İstismar yok | An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01.silabs · gecko software development kit · CWE-119 | Kritik9,8 | — | %1,2 | 14 Kas 2023 |
39İzleyin | CVE-2020-27630İstismar yok | In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.silabs · uc\/tcp-ip · CWE-330 | Kritik9,8 | — | %1,1 | 10 Eki 2023 |
39İzleyin | CVE-2023-2686İstismar yok | Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payloasilabs · gecko software development kit · CWE-120 | Kritik9,8 | — | %0,8 | 15 Haz 2023 |
39İzleyin | CVE-2022-24937İstismar yok | Malformed Zigbee packet causes Assert in EmberZNet 7.0.0 or earliersilabs · emberznet · CWE-119 | Kritik9,8 | — | %0,7 | 14 Kas 2022 |
39İzleyin | CVE-2023-41094İstismar yok | Touchlink authentication bypass due to packets processed after timeout or out of range in Ember ZNetsilabs · emberznet · CWE-940 | Kritik9,8 | — | %0,6 | 4 Eki 2023 |
39İzleyin | CVE-2023-4489İstismar yok | Z/IP Gateway Use of Uninitialized PRNG when Generating S0 Encryption Keysilabs · z\/ip gateway sdk · CWE-1279 | Kritik9,8 | — | %0,5 | 14 Ara 2023 |
39İzleyin | CVE-2023-4280İstismar yok | Unvalidated input in Silicon Labs TrustZone implementation leads to accessing Trusted memory regionsilabs · gecko software development kit · CWE-125 | Kritik9,8 | — | %0,4 | 2 Oca 2024 |
39İzleyin | CVE-2023-4041İstismar yok | Second Stage Gecko Bootloader GBL Parser Buffer Overrun Vulnerabilitysilabs · gecko bootloader · CWE-120 | Kritik9,8 | — | %0,4 | 23 Ağu 2023 |
39İzleyin | CVE-2023-51392İstismar yok | Silicon Labs EFR32xxx parts with classic key storage do not use hardware accelerated AES-CCMsilabs · emberznet · CWE-1240 | Kritik9,8 | — | %0,2 | 23 Şub 2024 |
36İzleyin | CVE-2020-15531İstismar yok | Silicon Labs Bluetooth Low Energy SDK before 2.13.3 has a buffer overflow via packet data.silabs · bluetooth low energy software development kit · CWE-120 | Yüksek8,8 | — | %3,2 | 19 Ağu 2020 |
36İzleyin | CVE-2022-24936İstismar yok | Gecko Standalone Bootloader vulnerability may allow bypassing application secure boot in some Series 2 devicessilabs · gecko bootloader · CWE-119 | Kritik9,1 | — | %0,8 | 2 Kas 2022 |
36İzleyin | CVE-2023-4020İstismar yok | Unvalidated input in Silicon Labs PSA Attestation service leads to secure memory access from non-secure memorysilabs · gecko software development kit · CWE-125 | Kritik9,1 | — | %0,6 | 15 Ara 2023 |
36İzleyin | CVE-2023-41095İstismar yok | Keys Stored in Plaintext on Secure Vault High for Silabs OpenThread devicessilabs · openthread sdk · CWE-312 | Kritik9,1 | — | %0,2 | 26 Eki 2023 |
35İzleyin | CVE-2024-23938İstismar yok | Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution Vulnerabilitysilabs · gecko os · CWE-121 | Yüksek8,8 | — | %0,9 | 28 Eyl 2024 |
35İzleyin | CVE-2024-23973İstismar yok | Silicon Labs Gecko OS HTTP GET Request Handling Stack-based Buffer Overflowsilabs · gecko os · CWE-120 | Yüksek8,8 | — | %0,5 | 30 Oca 2025 |
35İzleyin | CVE-2025-2837İstismar yok | Silicon Labs Gecko OS HTTP Request Handling Stack-based Buffer Overflow Remote Code Execution Vulnerabilitysilabs · gecko os · CWE-121 | Yüksek8,8 | — | %0,5 | 26 Mar 2025 |
35İzleyin | CVE-2024-50920İstismar yok | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to create a fake node via supplying crafted silabs · z-wave software development kit · CWE-281 | Yüksek8,8 | — | %0,5 | 10 Ara 2024 |
35İzleyin | CVE-2024-24731İstismar yok | Silicon Labs Gecko OS http_download Stack-based Buffer Overflowsilabs · gecko os · CWE-120 | Yüksek8,8 | — | %0,5 | 30 Oca 2025 |
- CVE-2022-2494240Planlayın
Heap-based buffer overflow in MicriumOS HTTP Server allows potential remote code execution
KritikCVSS 9,8İstismar yokEPSS %2silabs · micrium uc-http15 Kas 2022
- CVE-2023-2788240Planlayın
A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %2silabs · gecko software development kit14 Kas 2023
- CVE-2023-4531840Planlayın
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004.
KritikCVSS 9,8İstismar yokEPSS %2silabs · gecko software development kit20 Şub 2024
- CVE-2023-2518140Planlayın
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %2silabs · gecko software development kit14 Kas 2023
- CVE-2023-2837940Planlayın
A memory corruption vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %2silabs · gecko software development kit14 Kas 2023
- CVE-2023-3124740Planlayın
A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %2silabs · gecko software development kit14 Kas 2023
- CVE-2023-2839139İzleyin
A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %1silabs · gecko software development kit14 Kas 2023
- CVE-2023-2458539İzleyin
An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01.
KritikCVSS 9,8İstismar yokEPSS %1silabs · gecko software development kit14 Kas 2023
- CVE-2020-2763039İzleyin
In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.
KritikCVSS 9,8İstismar yokEPSS %1silabs · uc\/tcp-ip10 Eki 2023
- CVE-2023-268639İzleyin
Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payloa
KritikCVSS 9,8İstismar yokEPSS %1silabs · gecko software development kit15 Haz 2023
- CVE-2022-2493739İzleyin
Malformed Zigbee packet causes Assert in EmberZNet 7.0.0 or earlier
KritikCVSS 9,8İstismar yokEPSS %1silabs · emberznet14 Kas 2022
- CVE-2023-4109439İzleyin
Touchlink authentication bypass due to packets processed after timeout or out of range in Ember ZNet
KritikCVSS 9,8İstismar yokEPSS %1silabs · emberznet4 Eki 2023
- CVE-2023-448939İzleyin
Z/IP Gateway Use of Uninitialized PRNG when Generating S0 Encryption Key
KritikCVSS 9,8İstismar yokEPSS %1silabs · z\/ip gateway sdk14 Ara 2023
- CVE-2023-428039İzleyin
Unvalidated input in Silicon Labs TrustZone implementation leads to accessing Trusted memory region
KritikCVSS 9,8İstismar yokEPSS %0silabs · gecko software development kit2 Oca 2024
- CVE-2023-404139İzleyin
Second Stage Gecko Bootloader GBL Parser Buffer Overrun Vulnerability
KritikCVSS 9,8İstismar yokEPSS %0silabs · gecko bootloader23 Ağu 2023
- CVE-2023-5139239İzleyin
Silicon Labs EFR32xxx parts with classic key storage do not use hardware accelerated AES-CCM
KritikCVSS 9,8İstismar yokEPSS %0silabs · emberznet23 Şub 2024
- CVE-2020-1553136İzleyin
Silicon Labs Bluetooth Low Energy SDK before 2.13.3 has a buffer overflow via packet data.
YüksekCVSS 8,8İstismar yokEPSS %3silabs · bluetooth low energy software development kit19 Ağu 2020
- CVE-2022-2493636İzleyin
Gecko Standalone Bootloader vulnerability may allow bypassing application secure boot in some Series 2 devices
KritikCVSS 9,1İstismar yokEPSS %1silabs · gecko bootloader2 Kas 2022
- CVE-2023-402036İzleyin
Unvalidated input in Silicon Labs PSA Attestation service leads to secure memory access from non-secure memory
KritikCVSS 9,1İstismar yokEPSS %1silabs · gecko software development kit15 Ara 2023
- CVE-2023-4109536İzleyin
Keys Stored in Plaintext on Secure Vault High for Silabs OpenThread devices
KritikCVSS 9,1İstismar yokEPSS %0silabs · openthread sdk26 Eki 2023
- CVE-2024-2393835İzleyin
Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1silabs · gecko os28 Eyl 2024
- CVE-2024-2397335İzleyin
Silicon Labs Gecko OS HTTP GET Request Handling Stack-based Buffer Overflow
YüksekCVSS 8,8İstismar yokEPSS %1silabs · gecko os30 Oca 2025
- CVE-2025-283735İzleyin
Silicon Labs Gecko OS HTTP Request Handling Stack-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0silabs · gecko os26 Mar 2025
- CVE-2024-5092035İzleyin
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to create a fake node via supplying crafted
YüksekCVSS 8,8İstismar yokEPSS %0silabs · z-wave software development kit10 Ara 2024
- CVE-2024-2473135İzleyin
Silicon Labs Gecko OS http_download Stack-based Buffer Overflow
YüksekCVSS 8,8İstismar yokEPSS %0silabs · gecko os30 Oca 2025