Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 26 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Silicon Labs
Silicon Labs emberznet |
|
| Vendors & Products |
Silicon Labs
Silicon Labs emberznet |
Thu, 25 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 25 Jun 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In EmberZNet v9.0.2 and earlier, malformed GetGroupMembership commands can trigger repeated reads past the end of the message payload and terminate the process. These messages must come from a device that has already joined the network, and no information leakage back to the sender was observed. Only devices supporting the Groups cluster may be impacted. | |
| Title | Groups GetGroupMembership count/list-length mismatch in EmberZNet v9.0.2 | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Silabs
Published:
Updated: 2026-06-25T14:15:48.254Z
Reserved: 2026-05-18T20:02:03.669Z
Link: CVE-2026-47148
Updated: 2026-06-25T14:15:45.595Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-26T09:37:56Z