VYPR

ethos

by Riot OS

CVEs (1)

  • CVE-2026-22214CriJan 12, 2026
    risk 0.64cvss 9.8epss 0.00

    RIOT OS versions up to and including 2026.01-devel-317 contain a stack-based buffer overflow vulnerability in the ethos utility due to missing bounds checking when processing incoming serial frame data. The vulnerability occurs in the _handle_char() function, where incoming…