CVE-2026-15892 | Zephyr Project up to 4.4.1 Settings Management settings_mgmt.c resource consumption
A vulnerability classified as critical has been found in Zephyr Project Zephyr up to 4.4.1. Impacted is the function settings_mgmt_read/settings_mgmt_write/settings_mgmt_delete of the file subsys/mgmt/mcumgr/grp/settings_mgmt/src/settings_mgmt.c of the component Settings Management Handler. Performing a manipulation results in resource consumption.
This vulnerability was named CVE-2026-15892. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More