Heap-based Buffer Overflow in Philips Hue Bridge Zigbee Stack
CVE-2026-3555
8HIGH
What is CVE-2026-3555?
The vulnerability in the Philips Hue Bridge involves a flaw in the handling of custom Zigbee ZCL frames within the Model Info download feature. Due to inadequate data size validation before copying to a fixed-size buffer, an attacker can exploit this vulnerability to run arbitrary code on the device. This requires the user to initiate device pairing, allowing attackers to take control of the affected installations.
Affected Version(s)
Hue Bridge 1.73.1973146020