Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.1 CVE-2026-47154

Simple Metering GetProfileResponse interval-bounds bug in EmberZNet v9.0.2_CVE-2026-47154

In EmberZNet v9.0.2 and earlier, a malformed GetProfileResponse message can trigger out-of-bounds reads while iterating interval entries and termin...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47153

Level Control Step With On/Off divide-by-zero in EmberZNet v9.0.2_CVE-2026-47153

In EmberZNet v9.0.2 and earlier, a malformed Level Control Step command can terminate the process through a divide-by-zero fault. This command must...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47152

Level Control Move divide-by-zero in EmberZNet v9.0.2_CVE-2026-47152

In EmberZNet v9.0.2 and earlier, a malformed Level Control Move command can terminate the process through a divide-by-zero fault. This command must...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47151

Door Lock ClearWeekdaySchedule invalid table index and write in EmberZNet v9.0.2_CVE-2026-47151

In EmberZNet v9.0.2 and earlier, malformed ClearWeekdaySchedule messages can trigger out-of-bounds writes into Door Lock schedule state. The size a...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47150

IAS Zone enroll invalid table index and write in EmberZNet 9.0.2_CVE-2026-47150

In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and terminate the process. T...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47149

Door Lock GetUserType invalid table index in EmberZNet v9.0.2_CVE-2026-47149

In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads and terminate the proce...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47148

Groups GetGroupMembership count/list-length mismatch in EmberZNet v9.0.2_CVE-2026-47148

In EmberZNet v9.0.2 and earlier, malformed GetGroupMembership commands can trigger repeated reads past the end of the message payload and terminate...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47147

OTA server raw parser missing per-field bounds validation in EmberZNet v9.0.2_CVE-2026-47147

In EmberZNet v9.0.2 and earlier, malformed OTA requests can drive the OTA server parser into out-of-bounds reads. A limited amount of data from RAM...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47146

Color Control color-temperature assertion abort in EmberZNet v9.0.2_CVE-2026-47146

In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messages must come from a d...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47145

Color Control hue/saturation assertion abort in EmberZNet v9.0.2_CVE-2026-47145

In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messages must come from a d...

Silicon Labs EmberZNet CVE