CVE-2026-13214 | Zephyr Project up to 4.4.1 OCPP Client ocpp_j.c parse_getconfig_msg key stack-based overflow

SecurityVulns

A vulnerability has been found in Zephyr Project Zephyr up to 4.4.1 and classified as very critical. The impacted element is the function parse_getconfig_msg of the file subsys/net/lib/ocpp/ocpp_j.c of the component OCPP Client. Performing a manipulation of the argument key results in stack-based buffer overflow.

This vulnerability is cataloged as CVE-2026-13214. It is possible to initiate the attack remotely. There is no exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More