Back to Database
Status published
Medium
CVE-2022-24939
Malformed Zigbee packet with invalid destination address causes Assert
Vulnerability Description
A malformed packet containing an invalid destination address, causes a stack overflow in the Ember ZNet stack. This causes an assert which leads to a reset, immediately clearing the error.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-24939
Credits & Attribution
No credits recorded in the NVD database.
References
More from silabs.com
View All →CVE-2025-8414
Zigbee Green Power Host Buffer Overflow Vulnerability
Critical
9.4
CVE-2025-7964
Zigbee Router Denial of Service
Critical
9.2
CVE-2025-7448
Man in the middle (MitM) attack vulnerability in Wi-SUN library
High
8.6
CVE-2025-7432
DPA countermeasures not reseeded under certain conditions
Low
1
CVE-2025-4321
DoS in RS9116W-WiSeConnect L2CAP protocol due to reception of malformed packets
High
7.1
Affected Vendor
silabs.com
View all reports →Affected Software
Ember ZNet
Vulnerable Versions:
1.0.0
Timeline
Official Publish:
November 17th, 2022
Last Modified:
April 29th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H