Espressif

Esp-idf

34 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.13%
  • Veröffentlicht 14.05.2024 15:37:41
  • Zuletzt bearbeitet 31.12.2025 01:16:27

Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the Bluetooth stack component.

  • EPSS 0.21%
  • Veröffentlicht 25.03.2024 15:15:52
  • Zuletzt bearbeitet 05.12.2025 19:44:41

ESP-IDF is the development framework for Espressif SoCs supported on Windows, Linux and macOS. A Time-of-Check to Time-of-Use (TOCTOU) vulnerability was discovered in the implementation of the ESP-IDF bootloader which could allow an attacker with phy...

  • EPSS 0.52%
  • Veröffentlicht 25.06.2022 07:15:07
  • Zuletzt bearbeitet 21.11.2024 06:51:20

ESP-IDF is the official development framework for Espressif SoCs. In Espressif’s Bluetooth Mesh SDK (`ESP-BLE-MESH`), a memory corruption vulnerability can be triggered during provisioning, because there is no check for the `SegN` field of the Transa...

  • EPSS 1.29%
  • Veröffentlicht 07.09.2021 07:15:06
  • Zuletzt bearbeitet 21.11.2024 05:59:09

The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly restrict the Feature Page upon reception of an LMP Feature Response Extended packet, allowing attackers in radio range to trigger arbitrary code execution in ...

  • EPSS 0.81%
  • Veröffentlicht 07.09.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:59:09

The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of multiple LMP IO Capability Request packets during the pairing process, allowing attackers in radio range to trigger memory corruption ...

  • EPSS 0.79%
  • Veröffentlicht 07.09.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:59:09

The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (crash) in ESP32 by flooding th...

  • EPSS 1.38%
  • Veröffentlicht 12.01.2021 03:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:51

Espressif ESP-IDF 2.x, 3.0.x through 3.0.9, 3.1.x through 3.1.7, 3.2.x through 3.2.3, 3.3.x through 3.3.2, and 4.0.x through 4.0.1 has a Buffer Overflow in BluFi provisioning in btc_blufi_recv_handler function in blufi_prf.c. An attacker can send a c...

  • EPSS 0.87%
  • Veröffentlicht 31.08.2020 15:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:34

The Bluetooth Low Energy (BLE) controller implementation in Espressif ESP-IDF 4.0 through 4.2 (for ESP32 devices) returns the wrong number of completed BLE packets and triggers a reachable assertion on the host stack when receiving a packet with an M...

  • EPSS 0.76%
  • Veröffentlicht 31.08.2020 15:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:34

The Bluetooth Low Energy (BLE) controller implementation in Espressif ESP-IDF 4.2 and earlier (for ESP32 devices) does not properly restrict the channel map field of the connection request packet on reception, allowing attackers in radio range to cau...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 23.07.2020 16:15:12
  • Zuletzt bearbeitet 21.11.2024 04:59:57

An encryption-bypass issue was discovered on Espressif ESP-IDF devices through 4.2, ESP8266_NONOS_SDK devices through 3.0.3, and ESP8266_RTOS_SDK devices through 3.3. Broadcasting forged beacon frames forces a device to change its authentication mode...