CNNVD-202512-2658 Information

CNNVD ID

CNNVD-202512-2658

CVE-2025-12035

  • CNNVD Published: 2025-12-15

Description (Chinese)

Zephyr是Zephyr开源的一个可扩展的实时操作系统 (RTOS)。 Zephyr存在安全漏洞,该漏洞源于bt_br_acl_recv例程中存在整数溢出,可能导致处理BR/EDR L2CAP流量时出现问题。

Description (English)

Zephyr is an extended real-time operating system (RTOS) from Zephyr open source. Zephyr has a security loophole, which stems from the integer spill in the bt br acl recv routine, which may cause problems in dealing with BR/EDR L2CAP traffic.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Zephyr

Published

2025-12-15

Last Modified

2026-02-24

References

https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-p793-3456-h7w3 https://access.redhat.com/security/cve/cve-2025-12035

Share on: