cvedb.io
CVE-2022-39065
MEDIUM · CVSS 6.5
EPSS exploitation probability: 0%
Published 2022-10-14T16:15:19.243 · Last modified 2026-06-17T04:57:31.900

Summary

A single malformed IEEE 802.15.4 (Zigbee) frame makes the TRÅDFRI gateway unresponsive, such that connected lighting cannot be controlled with the IKEA Home Smart app and TRÅDFRI remote control. The malformed Zigbee frame is an unauthenticated broadcast message, which means all vulnerable devices within radio range are affected. CVSS 3.1 Base Score: 6.5 Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

ikea — tradfri_gateway_e1526_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when ikea ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.