Silicon Labs Secure NCP Host Integer Underflow Vulnerability Allowing Buffer Overread

Vulnerability

An integer underflow vulnerability has been identified in the Secure NCP host implementation by Silicon Labs. This vulnerability allows a buffer overread by sending a specially crafted packet.

Impact

Exploitation of this vulnerability leads to a buffer overread, which can potentially be used to read sensitive information from memory or cause a denial-of-service condition.

Added: Feb 20, 2026, 3:26 PM
Updated: Feb 20, 2026, 3:36 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
0.0
relevance
3.2
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.