VYPR
Unrated severityNVD Advisory· Published Jun 25, 2026· Updated Jun 25, 2026

IAS Zone enroll invalid table index and write in EmberZNet 9.0.2

CVE-2026-47150

Description

In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and terminate the process. The size and location of this write is limited. These messages must come from a device that has already joined the network. Only devices supporting the IAS Zone cluster may be impacted.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.