← Back

CVE-2025-9558

nvd nist
Published: Nov 26, 2025Modified: Dec 1, 2025

JSON object

Loading...
7.6
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Exploitability: 2.8 / Impact: 4.7
Source: vulnerabilities@zephyrproject.org (Secondary)

Description

There is a potential OOB Write vulnerability in the gen_prov_start function in pb_adv.c. The full length of the received data is copied into the link.rx.buf receiver buffer without any validation on the data size.

Timeline

No history available yet.