ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. The BluFi example bundled in ESP-IDF was vulnerable to memory overflows in two areas: Wi-Fi credential handling and Diffie–Hellman key exchange. This vulnerability is fixed in 5.4.1, 5.3.3, 5.1.6, and 5.0.9.
Metrics
Affected Vendors & Products
References
History
Thu, 22 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:espressif:esp-idf:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Sat, 23 Aug 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Espressif
Espressif esp-idf |
|
| Vendors & Products |
Espressif
Espressif esp-idf |
Fri, 22 Aug 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 21 Aug 2025 15:15:00 +0000
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-08-21T15:05:06.805Z
Updated: 2025-08-22T11:32:48.470Z
Reserved: 2025-08-12T16:15:30.238Z
Link: CVE-2025-55297
Updated: 2025-08-22T11:32:42.396Z
Status : Analyzed
Published: 2025-08-21T15:15:33.717
Modified: 2026-01-22T16:04:06.620
Link: CVE-2025-55297
No data.