CVE-2025-41361: Ziv Idf And Zlf
High severity, CVSS 8.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04. The devices improperly handle TLS requests associated with PROCOME sockets, so TLS requests sent to those PROCOME ports could cause the device to reboot and result in a denial of service. To exploit this vulnerability, PROCOME ports must be configured and active, with communications encryption active.
Affected products
- Ziv Idf And Zlf: before 0.10.0-0C08 (fixed in 0.10.0-0C08); before 0.10.0-0D00 (fixed in 0.10.0-0D00)
Published 2025-06-06. Last modified 2026-06-17.