CVE-2023-0779

MEDIUM

Zephyr < 3.2.0 - NULL Pointer Dereference

Title source: llm
STIX 2.1

Description

At the most basic level, an invalid pointer can be input that crashes the device, but with more knowledge of the device’s memory layout, further exploitation is possible.

References (1)

Core 1

Scores

CVSS v3 6.7
EPSS 0.0052
EPSS Percentile 40.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-20 CWE-476
Status published
Products (1)
zephyrproject/zephyr < 3.2.0
Published May 30, 2023
Tracked Since Feb 18, 2026