VYPR

Vendor CVEs

St

All CVEs

30 total · sorted by risk
  • CVE-2019-14236CriSep 12, 2019
    risk 0.64cvss 9.8epss 0.02

    On STMicroelectronics STM32L0, STM32L1, STM32L4, STM32F4, STM32F7, and STM32H7 devices, Proprietary Code Read Out Protection (PCROP) (a software IP protection method) can be defeated by observing CPU registers and the effect of code/instruction execution.

  • CVE-2024-45064HigApr 2, 2025
    risk 0.55cvss 8.5epss 0.01

    A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code execution. An attacker can send a sequence of requests to trigger this vulnerability.

  • CVE-2023-50096HigJan 1, 2024
    risk 0.49cvss 7.5epss 0.01

    STMicroelectronics STSAFE-A1xx middleware before 3.3.7 allows MCU code execution if an adversary has the ability to read from and write to the I2C bus. This is caused by an StSafeA_ReceiveBytes buffer overflow in the X-CUBE-SAFEA1 Software Package for STSAFE-A sample…

  • CVE-2020-8004HigApr 6, 2020
    risk 0.49cvss 7.5epss 0.03

    STMicroelectronics STM32F1 devices have Incorrect Access Control.

  • CVE-2020-27212HigMay 21, 2021
    risk 0.46cvss 7.0epss 0.00

    STMicroelectronics STM32L4 devices through 2020-10-19 have incorrect access control. The flash read-out protection (RDP) can be degraded from RDP level 2 (no access via debug interface) to level 1 (limited access via debug interface) by injecting a fault during the boot phase.

  • CVE-2021-34262MedJul 22, 2021
    risk 0.44cvss 6.8epss 0.00

    A buffer overflow vulnerability in the USBH_ParseEPDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.

  • CVE-2021-34260MedJul 22, 2021
    risk 0.44cvss 6.8epss 0.00

    A buffer overflow vulnerability in the USBH_ParseInterfaceDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.

  • CVE-2021-34259MedJul 22, 2021
    risk 0.44cvss 6.8epss 0.00

    A buffer overflow vulnerability in the USBH_ParseCfgDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.

  • CVE-2020-13466MedAug 31, 2020
    risk 0.44cvss 6.8epss 0.00

    STMicroelectronics STM32F103 devices through 2020-05-20 allow physical attackers to execute arbitrary code via a power glitch and a specific flash patch/breakpoint unit configuration.

  • CVE-2019-14238MedSep 24, 2019
    risk 0.43cvss 6.6epss 0.00

    On STMicroelectronics STM32F7 devices, Proprietary Code Read Out Protection (PCROP) (a software IP protection method) can be defeated with a debug probe via the Instruction Tightly Coupled Memory (ITCM) bus.

  • CVE-2024-50385MedApr 2, 2025
    risk 0.42cvss 6.5epss 0.01

    A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.This…

  • CVE-2024-50384MedApr 2, 2025
    risk 0.42cvss 6.5epss 0.01

    A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.This…

  • CVE-2019-19192MedFeb 12, 2020
    risk 0.42cvss 6.5epss 0.01

    The Bluetooth Low Energy implementation on STMicroelectronics BLE Stack through 1.3.1 for STM32WB5x devices does not properly handle consecutive Attribute Protocol (ATT) requests on reception, allowing attackers in radio range to cause an event deadlock or crash via crafted…

  • CVE-2021-43393MedMar 4, 2022
    risk 0.40cvss 6.2epss 0.00

    STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to abuse signature verification. This is associated with the ECDSA signature algorithm on the Java Card J-SAFE3 and STSAFE-J platforms exposing a 3.0.4 Java Card API. It is exploitable for…

  • CVE-2021-43392MedMar 4, 2022
    risk 0.40cvss 6.2epss 0.00

    STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to obtain information on cryptographic secrets. This is associated with the ECDSA signature algorithm on the Java Card J-SAFE3 and STSAFE-J platforms exposing a 3.0.4 Java Card API. It is…

  • CVE-2021-29414MedMay 21, 2021
    risk 0.40cvss 6.1epss 0.00

    STMicroelectronics STM32L4 devices through 2021-03-29 have incorrect physical access control.

  • CVE-2019-16863MedNov 14, 2019
    risk 0.39cvss 5.9epss 0.03

    STMicroelectronics ST33TPHF2ESPI TPM devices before 2019-09-12 allow attackers to extract the ECDSA private key via a side-channel timing attack because ECDSA scalar multiplication is mishandled, aka TPM-FAIL.

  • CVE-2020-20949MedJan 20, 2021
    risk 0.38cvss 5.9epss 0.01

    Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the…

  • CVE-2023-36629MedJan 9, 2024
    risk 0.36cvss 5.5epss 0.00

    The ST ST54-android-packages-apps-Nfc package before 130-20230215-23W07p0 for Android has an out-of-bounds read.

  • CVE-2021-34268MedJul 22, 2021
    risk 0.30cvss 4.6epss 0.00

    An issue in the USBH_ParseDevDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) via a malformed USB device packet.

  • CVE-2021-34267MedJul 22, 2021
    risk 0.30cvss 4.6epss 0.00

    An in the USBH_MSC_InterfaceInit() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) when the system tries to communicate with the connected endpoint.

  • CVE-2021-34261MedJul 22, 2021
    risk 0.30cvss 4.6epss 0.00

    An issue in USBH_ParseCfgDesc() of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service due to the system hanging when trying to set a remote wake-up feature.

  • CVE-2017-18347MedSep 12, 2018
    risk 0.30cvss 4.6epss 0.00

    Incorrect access control in RDP Level 1 on STMicroelectronics STM32F0 series devices allows physically present attackers to extract the device's protected firmware via a special sequence of Serial Wire Debug (SWD) commands because there is a race condition between full…

  • CVE-2024-50597MedApr 2, 2025
    risk 0.28cvss 4.3epss 0.01

    An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.This…

  • CVE-2024-50596MedApr 2, 2025
    risk 0.28cvss 4.3epss 0.01

    An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.This…

  • CVE-2024-50595MedApr 2, 2025
    risk 0.28cvss 4.3epss 0.01

    An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denial of service. An attacker can send a sequence of malicious packets to trigger this…

  • CVE-2024-50594MedApr 2, 2025
    risk 0.28cvss 4.3epss 0.01

    An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denial of service. An attacker can send a sequence of malicious packets to trigger this…

  • CVE-2021-42553MedOct 21, 2022
    risk 0.00cvss 6.8epss 0.01

    A buffer overflow vulnerability in stm32_mw_usb_host of STMicroelectronics in versions before 3.5.1 allows an attacker to execute arbitrary code when the descriptor contains more endpoints than USBH_MAX_NUM_ENDPOINTS. The library is typically integrated when using a RTOS such as…

  • CVE-2006-3037Jun 15, 2006
    risk 0.00cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in publish.php in ST AdManager Lite allow remote attackers to inject arbitrary web script or HTML via the (1) title, (2) description, (3) article, (4) bio, and (5) name parameters.

  • CVE-2003-0392Jul 2, 2003
    risk 0.00cvss epss 0.01

    Directory traversal vulnerability in ST FTP Service 3.0 allows remote attackers to list arbitrary directories via a CD command with a DoS drive letter argument (e.g. E:).