Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-4839 | IBM Host firmware for LC-class Systems is vulnerable to a stack based buffer overflow, caused by improper bounds checki… | Medium (4.9) | 2021-05-25 | Environment Specific |
| CVE-2020-13602 | Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validatio… | Medium (4.0) | 2021-05-25 | Environment Specific |
| CVE-2020-13600 | Malformed SPI in response for eswifi can corrupt kernel memory. Zephyr versions >= 1.14.2, >= 2.3.0 contain Heap-based … | High (7.0) | 2021-05-25 | Environment Specific |
| CVE-2020-10072 | Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Im… | Medium (5.9) | 2021-05-25 | Environment Specific |
| CVE-2020-10069 | Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Impr… | Medium (4.3) | 2021-05-25 | Environment Specific |