Vulnerabilidades en Espressif

34 resultados
Análisis Vexday

A Espressif apresenta footprint mínimo de vulnerabilidades conhecidas com apenas 1 CVE registrado na base, sem qualquer exploração ativa documentada ou casos críticos. O risco atual é baixo, concentrado em uma fraqueza de controle de acesso (CWE-912), com nenhuma divulgação recente que sinalize atividade de pesquisa intensiva.

CVE-2025-27840MEDIUMEspressif ESP32 chips allow 29 hidden HCI commands, such as 0xFC02 (Write memory).EPSS 1.3%CVE-2024-45798CRITICALMultiple Poisoned Pipeline Execution (PPE) vulnerabilitiesEPSS 0.9%CVE-2025-52471HIGHESP-NOW Integer Underflow Vulnerability AdvisoryEPSS 0.9%CVE-2026-42854CRITICALarduino-esp32: Stack buffer overflow in WebServer multipart boundary parsing leads to remote crash potential RCEEPSS 0.8%CVE-2026-45541HIGHESF-IDF: Remote Null Pointer Dereference in WebSocket ServerEPSS 0.8%CVE-2026-55687HIGHESF-IDF: Stack-Based Out-of-Bounds Write in JPEG Decoder DQT Marker ParsingEPSS 0.7%CVE-2025-66409LOWESF-IDF has an Out-of-Bounds Read in ESP32 Bluetooth AVRCP Command HandlingEPSS 0.6%CVE-2024-53845MEDIUMAES/CBC Constant IV Vulnerability in ESPTouch v2EPSS 0.6%CVE-2022-24893HIGHEspressif Bluetooth Mesh Stack Vulnerable to Out-of-bounds Write leading to memory buffer corruptionEPSS 0.5%CVE-2026-45542HIGHESF-IDF: Heap buffer overflow in protocomm Security2 over BluetoothEPSS 0.5%CVE-2026-42855HIGHarduino-esp32: Digest authentication URI mismatch bypass in WebServer allows cross-resource replay attackEPSS 0.5%CVE-2024-42484MEDIUMESP-NOW OOB Vulnerability In Group Type MessageEPSS 0.4%CVE-2025-53007HIGHarduino-esp32 vulnerable to CRLF injection in WebServer.cppEPSS 0.4%CVE-2025-68473NONEESF-IDF Has Out-of-Bounds Read in ESP32 Bluetooth SDP Result HandlingEPSS 0.4%CVE-2026-45160MEDIUMESF-IDF: Out-of-bounds Read in lwIP DHCP Server Option ParserEPSS 0.4%CVE-2025-64342MEDIUMESF-IDF's ESP32 Bluetooth Controller Has an Invalid Access Address VulnerabilityEPSS 0.4%CVE-2025-65092MEDIUMESP32-P4 JPEG Decoder Header Parsing VulnerabilityEPSS 0.4%CVE-2026-46532MEDIUMESF-IDF: Heap Out-of-Bounds Read in Bluedroid AVRCP Target ParserEPSS 0.4%CVE-2026-25532MEDIUMESF-IDF is Vulnerable to WPS Enrollee Fragment Integer UnderflowEPSS 0.4%CVE-2025-55297MEDIUMESF-IDF BluFi Example Memory Overflow VulnerabilityEPSS 0.3%