CVE-2025-8414
Due to improper input validation, a buffer overflow vulnerability is present in Zigbee EZSP Host Applications. If the buffer overflows, stack corruption is possible. In certain conditions, this could lead to arbitrary code execution. Access to a network key is required to exploit this vulnerability.
Published:Oct 17, 2025
Last Modified:Apr 15, 2026
EPS:Oct 17, 2025
EPSS Score:0.00036
CVSS Score:9.4
Affected Products
Vendor
Product
Action
Vendor
Silabs
Product
Gecko Sdk
Silabs
Gecko Sdk
Vendor
Silabs
Product
Simplicity Sdk
Silabs
Simplicity Sdk
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
