CVE-2023-0359 is a high-severity vulnerability affecting Zephyr Project's Zephyr RTOS, stemming from a missing nullptr-check in the handle_ra_input function that can lead to a nullptr-dereference. This network-exploitable flaw has low attack complexity and could result in a complete denial of service. While no public exploits, Metasploit modules, or Nuclei templates are currently available, and there is minimal community discussion, organizations using Zephyr should prioritize patching to mitigate potential risks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.2.0CPE matchmatch criteria | cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.