St
st
29 CVEs • 305 products
Products (305)
Click to collapseToggle
Products (305)
Click to collapse
CVEs (29)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denial of service. An attack...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denial of service. An attack...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can sen...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreNov 3, 2025 Apr 2, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can sen...Show more |
1St 10X Cube Azrt H7rs X Cube Azrtos F4X Cube Azrtos F7+7 moreSep 5, 2025 Apr 2, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code execution. An attacker ca...Show more |
The ST ST54-android-packages-apps-Nfc package before 130-20230215-23W07p0 for Android has an out-of-bounds read. |
STMicroelectronics STSAFE-A1xx middleware before 3.3.7 allows MCU code execution if an adversary has the ability to read from and write to the I2C bus. This is caused by an StSafeA_ReceiveBytes buffer overflow in the X-C...Show more |
A buffer overflow vulnerability in stm32_mw_usb_host of STMicroelectronics in versions before 3.5.1 allows an attacker to execute arbitrary code when the descriptor contains more endpoints than USBH_MAX_NUM_ENDPOINTS. Th...Show more |
1St 2J Safe3 Firmware Stsafe J FirmwareNov 21, 2024 Mar 4, 2022 N/A· v4 6.2 MEDIUM· v3 1.9 LOW· v2 STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to abuse signature verification. This is associated with the ECDSA signature algorithm on the Java Card J-SAFE3 and STSAFE-J platform...Show more |
1St 2J Safe3 Firmware Stsafe J FirmwareNov 21, 2024 Mar 4, 2022 N/A· v4 6.2 MEDIUM· v3 1.9 LOW· v2 STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to obtain information on cryptographic secrets. This is associated with the ECDSA signature algorithm on the Java Card J-SAFE3 and ST...Show more |
An issue in the USBH_ParseDevDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) via a malformed USB device packet. |
An in the USBH_MSC_InterfaceInit() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) when the system tries to communicate with the connected endpoint. |
A buffer overflow vulnerability in the USBH_ParseEPDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code. |
An issue in USBH_ParseCfgDesc() of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service due to the system hanging when trying to set a remote wake-up feature. |
A buffer overflow vulnerability in the USBH_ParseInterfaceDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code. |
A buffer overflow vulnerability in the USBH_ParseCfgDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code. |
STMicroelectronics STM32L4 devices through 2021-03-29 have incorrect physical access control. |
STMicroelectronics STM32L4 devices through 2020-10-19 have incorrect access control. The flash read-out protection (RDP) can be degraded from RDP level 2 (no access via debug interface) to level 1 (limited access via deb...Show more |