CVEs we hold for Silicon
Records whose assigning authority named Silicon as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-6924Weak entropy initialization in Silicon Labs Matter SiWx917 TinyCrypt pathSilicon Labs Matter Github
CVE-2026-5706Buffer overflow in Bluetooth Mesh SDK when handling extended advertisementsSilicon Labs BT Mesh SDK
CVE-2026-47154Simple Metering GetProfileResponse interval-bounds bug in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47153Level Control Step With On/Off divide-by-zero in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47151Door Lock ClearWeekdaySchedule invalid table index and write in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47150IAS Zone enroll invalid table index and write in EmberZNet 9.0.2Silicon Labs EmberZNet
CVE-2026-47148Groups GetGroupMembership count/list-length mismatch in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47147OTA server raw parser missing per-field bounds validation in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47146Color Control color-temperature assertion abort in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-47145Color Control hue/saturation assertion abort in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-4526Global ZCL command parser missing minimum-length validation in EmberZNet v9.0.2Silicon Labs EmberZNet
CVE-2026-3290Timing limitations of the HRNG in RS9116 when power save mode is enabled results in predictable valuesSilicon Labs RS9116 SDK
CVE-2026-2815Incorrect use of the PUF key for user key generation in EFR32xG27 results in predictable keysSilicon Labs SiSDK
CVE-2026-15419CP210x Driver Memory Corruption results in Arbitrary Code ExecutionSilicon Labs silabser.sys driver
CVE-2025-2838Silicon Labs Gecko OS DNS Response Processing Infinite Loop Denial-of-Service VulnerabilitySilicon Labs Gecko OS
CVE-2025-2837Silicon Labs Gecko OS HTTP Request Handling Stack-based Buffer Overflow Remote Code Execution VulnerabilitySilicon Labs Gecko OS
CVE-2024-23973Silicon Labs Gecko OS HTTP GET Request Handling Stack-based Buffer OverflowSilicon Labs Gecko OS
CVE-2024-23938Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution VulnerabilitySilicon Labs Gecko OS
CVE-2024-22472Long S0 frames received by 500 series Z-Wave devices may cause buffer overflowSilicon Labs Z-Wave SDK
CVE-2023-41094Touchlink authentication bypass due to packets processed after timeout or out of range in Ember ZNetSilicon Labs Ember ZNet
CVE-2023-41093Loss of confidentiality due to potential race condition in Bluetooth controller Connection_Handle reuseSilicon Labs Simplicity SDK
CVE-2023-4041Second Stage Gecko Bootloader GBL Parser Buffer Overrun VulnerabilitySilicon Labs Gecko Bootloader
CVE-2022-24937Malformed Zigbee packet causes Assert in EmberZNet 7.0.0 or earlierSilicon Labs Ember ZNet
51 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.