VendorsZephyrprojectzephyrany version
Vulnerabilities

Zephyrproject Zephyr any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

166CVEs
CVE-2021-3435
L2CAP: Information leakage in le_ecred_conn_req()
Published 2022-06-28 · Modified
4.0EPSS 0.002
CVE-2021-3433
BT: Invalid channel map in CONNECT_IND results to Deadlock
Published 2022-06-28 · Modified
4.0EPSS 0.002
CVE-2026-10636
Use-after-free in Zephyr IPv4 IGMP send path (`igmp_send`)
Published 2026-06-16 · Modified
3.7EPSS 0.003
CVE-2020-13599
Security problem with settings and littlefs
Published 2021-05-24 · Modified
3.3EPSS 0.002
CVE-2026-13480
Out-of-bounds read in LoRaWAN fragmented data block transport (FUOTA) downlink handler
Published 2026-08-26 · Analyzed
3.1EPSS 0.003
CVE-2026-10654
RFCOMM session-disconnect race leaks session/L2CAP and denies further RFCOMM service in Zephyr Bluetooth Classic
Published 2026-06-30 · Analyzed
3.1EPSS 0.002
← Prev5 / 5