Threats Tagged 'cve-2026-13479'
View all threats tagged with 'cve-2026-13479'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-13479'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-13479 is a low-severity vulnerability in the Zephyr project's LoRaWAN clock-synchronization service. The vulnerability arises from insufficient bounds checking when parsing the AppTimeAns command in downlink messages, allowing a read of up to 5 bytes beyond the decrypted payload buffer. This over-read does not cause crashes or data disclosure but can cause a minor integrity impact by applying a garbage time correction to the device's clock offset. Exploitation requires a malicious or compromised network/application server or possession of session keys. A fix involves adding an explicit length check to drop too-short AppTimeAns messages. Join the discussion | CVE Database V5 | 08/26/2026, 14:03:47 UTC Added: 08/26/2026, 14:23:50 UTC |
Showing 1 to 1 of 1 result