Known Vulnerabilities for products from Silabs
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Silabs".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-47154 json | In EmberZNet v9.0.2 and earlier, a malformed GetProfileResponse message can trigger out-of-bounds reads while iterating inter... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47153 json | In EmberZNet v9.0.2 and earlier, a malformed Level Control Step command can terminate the process through a divide-by-zero fa... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47152 json | In EmberZNet v9.0.2 and earlier, a malformed Level Control Move command can terminate the process through a divide-by-zero fa... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47151 json | In EmberZNet v9.0.2 and earlier, malformed ClearWeekdaySchedule messages can trigger out-of-bounds writes into Door Lock sche... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47150 json | In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and te... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47149 json | In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads a... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47148 json | In EmberZNet v9.0.2 and earlier, malformed GetGroupMembership commands can trigger repeated reads past the end of the message... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47147 json | In EmberZNet v9.0.2 and earlier, malformed OTA requests can drive the OTA server parser into out-of-bounds reads. A limited a... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47146 json | In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messa... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-47145 json | In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messa... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-4526 json | In EmberZNet v9.0.2 and earlier, malformed global ZCL messages can trigger out-of-bounds reads in framework parsing logic and... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2023-41097 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7.5 - HIGH | 2023-12-21 | 2024-01-03 |
| CVE-2023-41096 json | Missing Encryption of Security Keys vulnerability in Silicon Labs Ember ZNet SDK on 32 bit, ARM (SecureVault High modules) a... | 6.1 - MEDIUM | 2023-10-26 | 2023-11-08 |
| CVE-2023-41095 json | Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) al... | 9.1 - CRITICAL | 2023-10-26 | 2023-11-07 |
| CVE-2023-41094 json | TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Releas... | 9.8 - CRITICAL | 2023-10-04 | 2023-10-10 |
| CVE-2023-32100 json | Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier re... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
| CVE-2023-32099 json | Compiler removal of buffer clearing in sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier resul... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
| CVE-2023-32098 json | Compiler removal of buffer clearing in sli_se_sign_message in Silicon Labs Gecko Platform SDK v4.2.1 and earlie... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
| CVE-2023-32097 json | Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform SDK ... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
| CVE-2023-32096 json | Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform SDK ... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
Known software with vulnerabilities from Silabs
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Silabs | Bluetooth Low Energy Software Development Kit | 2.13.0.0 |