CVE-2025-10458 — Improper Handling of Length Parameter Inconsistency in Zephyr
Severity
7.6HIGHNVD
EPSS
0.0%
top 93.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 19
Description
Parameters are not validated or sanitized, and are later used in various internal operations.
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:HExploitability: 2.8 | Impact: 4.7