CVEs we hold for Sony
Records whose assigning authority named Sony as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-18284Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalation VulnerabilitySony XAV-9500ES
CVE-2026-18282Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-9500ES
CVE-2026-18281Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-9500ES
CVE-2026-18280Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution VulnerabilitySony XAV-9500ES
CVE-2026-18279Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution VulnerabilitySony XAV-9500ES
CVE-2026-18278Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure VulnerabilitySony XAV-9500ES
CVE-2025-5820Sony XAV-AX8500 Bluetooth ERTM Channel Authentication Bypass VulnerabilitySony XAV-AX8500
CVE-2025-5479Sony XAV-AX8500 Bluetooth AVCTP Protocol Heap-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-AX8500
CVE-2025-5478Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution VulnerabilitySony XAV-AX8500
CVE-2025-5477Sony XAV-AX8500 Bluetooth L2CAP Protocol Heap-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-AX8500
CVE-2025-5476Sony XAV-AX8500 Bluetooth Improper Isolation Authentication Bypass VulnerabilitySony XAV-AX8500
CVE-2025-5475Sony XAV-AX8500 Bluetooth Packet Handling Integer Overflow Remote Code Execution VulnerabilitySony XAV-AX8500
CVE-2024-23972Sony XAV-AX5500 USB Configuration Descriptor Buffer Overflow Remote Code Execution VulnerabilitySony XAV-AX5500
CVE-2024-23934Sony XAV-AX5500 WMV/ASF Parsing Stack-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-AX5500
CVE-2024-23933Sony XAV-AX5500 CarPlay TLV Stack-based Buffer Overflow Remote Code Execution VulnerabilitySony XAV-AX5500
CVE-2024-23922Sony XAV-AX5500 Insufficient Firmware Update Validation Remote Code Execution VulnerabilitySony XAV-AX5500
CVE-2020-36923Sony BRAVIA Digital Signage 1.7.8 Client-Side Protection Bypass via IDORSony BRAVIA Digital Signage
CVE-2020-36885Sony IPELA Network Camera 1.82.01 Remote Stack Buffer Overflow via ftpclient.cgiSony Electronics Inc. IPELA Network Camera
48 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.