CVE detail
CVE-2026-42799
Out-of-bounds read vulnerability in ASR Kestrel (nr_fw modules) allows Overflow Buffers. This vulnerability is associated with program files Code/Nr/nr_fw/RA/src/NrPwrCtrl.C. This issue affects Kestrel: before 2026/02/10.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 6.9 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
1 source links · newest first
- https://www.asrmicro.com/en/goods/psirt?cid=44www.asrmicro.com
No excerpt available.
Vendor Advisorywww.asrmicro.comApr 30, 2026, 9:16 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-32631CVSS 7.2 · High
Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations.
- CVE-2025-49480CVSS 7.4 · High
Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lzma/src/LzmaEnc.c. This issue affects Falcon_Linux、Kestrel、…
- CVE-2024-32634CVSS 6.1 · Medium
In huge memory get unmapped area check, code can never be reached because of a logical contradiction.
- CVE-2024-32633CVSS 4.0 · Medium
An unsigned value can never be negative, so eMMC full disk test will always evaluate the same way.
- CVE-2024-32632CVSS 6.6 · Medium
A value in ATCMD will be misinterpreted by printf, causing incorrect output and possibly out-of-bounds memory access
- CVE-2024-32625CVSS 5.8 · Medium
In OffloadAMRWriter, a scalar field is not initialized so will contain an arbitrary value left over from earlier computations