Due to improper input validation, a buffer overflow vulnerability is present in
Zigbee EZSP Host Applications. If the buffer overflows, stack corruption is possible. In certain
conditions, this could lead to arbitrary code execution. Access to a network key is required to exploit this vulnerability.
{
"cwe_ids": [
"CWE-20"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/8xxx/CVE-2025-8414.json",
"cna_assigner": "Silabs",
"unresolved_ranges": [
{
"extracted_events": [
{
"last_affected": "4.4.6"
}
],
"source": "AFFECTED_FIELD"
}
]
}{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "2025.6.0"
},
{
"last_affected": "2024.12.2"
}
],
"source": "AFFECTED_FIELD"
}