Zebra
This hub aggregates every CVE we track for Zebra, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
12
CVEs tracked
3
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4MEDIUM4CRITICAL3LOW1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2
0
6
0
1
0
2024-092026-08
Latest CVEs
The 12 most recently published vulnerabilities affecting Zebra.
- CVE-2026-54496Missing copy constraint in halo2_gadgets variable-base scalar multiplication allows under-constrained base, breaking Orchard Action circuit soundness9.3
- CVE-2026-44500ZEBRA: Allocation Amplification in Inbound Network Deserializers5.3
- CVE-2026-44498ZEBRA: Block Validator Undercounts Coinbase and P2SH Sigops7.5
- CVE-2026-44497ZEBRA: Consensus Divergence in Transparent Sighash Hash-Type Handling due to Stale Buffer9.1
- CVE-2026-41585ZEBRA: Denial of Service via Interrupted JSON-RPC Requests from Authenticated Clients6.5
- CVE-2026-41584ZEBRA: rk Identity Point Panic in Transaction Verification7.5
- CVE-2026-41583ZEBRA: Consensus Divergence in Transparent Sighash Hash-Type Handling9.1
- CVE-2026-34377Zebra has a Consensus Failure due to Improper Verification of V5 Transactions8.1
- CVE-2026-34202Zebra node crash — V5 transaction hash panic (P2P reachable)7.5
- CVE-2003-0795The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place when processing the SE marker, which allows remote attackers to cause a deni...5.0
- CVE-2003-0859The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.4.9
- CVE-2003-0858Zebra 0.93b and earlier, and quagga before 0.95, allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.2.1
Product normalization is registry-driven with AI assist and human review. How it works