CVE-2026-47148: Groups GetGroupMembership count/list-length mismatch in EmberZNet v9.0.2
In EmberZNet v9.0.2 and earlier, malformed GetGroupMembership commands can trigger repeated reads past the end of the message payload and terminate the process. These messages must come from a device that has already joined the network, and no information leakage back to the sender was observed. Only devices supporting the Groups cluster may be impacted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47148?
The severity of CVE-2026-47148 is rated as risk 23.
How do I fix CVE-2026-47148?
To fix CVE-2026-47148, update to EmberZNet version 9.0.3 or later where the vulnerability is resolved.
What are the potential impacts of CVE-2026-47148?
CVE-2026-47148 can cause the affected process to terminate due to malformed GetGroupMembership commands.
What versions of EmberZNet are affected by CVE-2026-47148?
EmberZNet versions 9.0.2 and earlier are affected by CVE-2026-47148.
Do I need to be connected to the network to exploit CVE-2026-47148?
Yes, an attacker must be connected to the network as the vulnerability requires sending commands from a device that has already joined.