CVE-2026-47149: Door Lock GetUserType invalid table index in EmberZNet v9.0.2
In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads and terminate the process. These messages must come from a device that has already joined the network, and no information leakage back to the sender was observed. Only devices supporting the Door Lock cluster may be impacted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47149?
CVE-2026-47149 has a risk rating of 17.
How do I fix CVE-2026-47149?
To remedy CVE-2026-47149, update to the latest version of EmberZNet beyond v9.0.2.
What is the impact of CVE-2026-47149?
CVE-2026-47149 allows malformed Door Lock user identifiers to cause out-of-bounds table reads, potentially terminating the process.
Who is affected by CVE-2026-47149?
Devices using EmberZNet v9.0.2 and earlier are affected by CVE-2026-47149.
Is there any data leakage associated with CVE-2026-47149?
No information leakage back to the sender was observed with CVE-2026-47149.