Stmicroelectronics
7 CVEs tracked since 2025. Since Apr 2025, none of them reached CISA KEV.
Stmicroelectronics CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2025-04 | 7 | 0 |
Products
The products that kept showing up in Stmicroelectronics's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 8 most recently published vulnerabilities affecting Stmicroelectronics.
- CVE-2024-45064A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code ex...8.5
- CVE-2024-50385A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of servi...6.5
- CVE-2024-50384A denial of service vulnerability exists in the NetX Component HTTP server functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of servi...6.5
- CVE-2024-50594An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denia...4.3
- CVE-2024-50595An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted series of network requests can lead to denia...4.3
- CVE-2024-50596An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service...4.3
- CVE-2024-50597An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted network packet can lead to denial of service...4.3
- CVE-2019-16863STMicroelectronics ST33TPHF2ESPI TPM devices before 2019-09-12 allow attackers to extract the ECDSA private key via a side-channel timing attack because ECDSA scalar multiplication is mishandled, a...5.9
The record
- Peak rank
- #117 in Apr 2025
- Busiest month shown
- Apr 2025, 7 CVEs
- Months with a KEV entry
- 0 since Apr 2025
- Monthly snapshots
- 1 since 2025