VYPR

500 Series SDK

by Silabs.com

CVEs (3)

  • CVE-2024-22472HigMay 7, 2024
    risk 0.53cvss 8.1epss 0.04

    A buffer Overflow vulnerability in Silicon Labs 500 Series Z-Wave devices may allow Denial of Service, and potential Remote Code execution This issue affects all versions of Silicon Labs 500 Series SDK prior to v6.85.2 running on Silicon Labs 500 series Z-wave devices.

  • CVE-2020-9059Jan 7, 2022
    risk 0.00cvss epss 0.00

    Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible to uncontrolled resource consumption leading to battery exhaustion. As an example, the Schlage BE468 version 3.42 door lock is vulnerable and fails open at a low battery level.

  • CVE-2020-9058Jan 7, 2022
    risk 0.00cvss epss 0.00

    Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to the Linear LB60Z-1 version 3.5, Dome DM501 version 4.26, and Jasco ZW4201 version 4.05, do not implement encryption or replay protection.