CVE-2026-17610 MEDIUM

CVE-2026-17610: RAIL 802.15.4 Mux missing ACK can lead to DoS

Vendor Silicon Labs
Product SiSDK
Weakness CWE-404
Published August 27, 2026
Last update August 28, 2026

CVSS base score

6.0/10
Attack vector Adjacent
Attack complexity Low
Privileges required None
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

What the vulnerability does

01Description

In SiSDK v2026.6.0 and earlier, high network traffic loads can cause a dropped ACK leading to a denial of service. This is only present for EFR32MG24 and EFR32MG26 devices running concurrent multiprotocol Zigbee and Thread.

Key dates

02Disclosure timeline

August 27, 2026 CVE published
August 28, 2026 Record updated