zephyrproject
1 Product
7 CVEs
CVE Severity Distribution (All Time)
Critical
High
Medium
Low
Timeline Overview
Last 30 Days
0 CVEs
Last 6 Months
0 CVEs
Last Year
3 CVEs
Products
View allRecent CVEs
No proper validation of the length of user input in olcp_ind_handler in zephyr/subsys/bluetooth/services/ots/ots_client.c.
In utf8_trunc in zephyr/lib/utils/utf8.c, last_byte_p can point to one byte before the string pointer if the string is empty.
In ascs_cp_rsp_add in /subsys/bluetooth/audio/ascs.c, an unchecked tailroom could lead to a global buffer overflow.