CVE-2023-2234: Zephyrproject Zephyr
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Union variant confusion allows any malicious BT controller to execute arbitrary code on the Zephyr host.
Affected products
- Zephyrproject Zephyr: up to and including 3.3.0
Published 2023-07-10. Last modified 2026-06-17.