The cellular attack works without user action when a target is idle or inactive and within range of an attacker with SDR transmission capability.
Idle and inactive phones can camp on the transmitter automatically, before authentication and without warning.
Commercial 5G SA and NSA networks and ordinary consumer phones or cellular modems operating within a rogue base station's coverage.
User-invisible subscriber tracking, radio-generation downgrade and persistent modem denial of service
A low-cost rogue 5G cell can silently track subscribers, force radio-generation downgrades and persistently disrupt modems on commercial networks. Researchers demonstrated the attack against commercial networks and off-the-shelf devices using open-source cellular stacks and inexpensive SDR hardware.
The attacker observes the operator identifiers, spectrum and reselection priorities, then broadcasts a stronger or higher-priority cell with an open-source stack and inexpensive SDR hardware. A phone in RRC_IDLE or RRC_INACTIVE camps on it without warning or interaction.
The rogue cell can request permanent, concealed or temporary subscriber identifiers and correlate successive GUTIs. Unauthenticated Registration Reject causes can then force an LTE or UMTS downgrade, trap the modem in a retry loop or leave it frozen until the user manually resets its radio state.
VMware vCenter Server Appliance, the virtualization-management control plane deployed in vSphere and VMware Cloud Foundation environments.
One route uses a crafted SRP value to authenticate to vmdir as an existing identity without its password. The other uses traversal in syslog fields for arbitrary file write; researchers reached code execution but withheld the final sink. Broadcom has fixed builds, while pre-fix image acceptance and revocation completeness remain unknown.
SAP NetWeaver Message Server and Gateway infrastructure used by SAP S/4HANA, S/4HANA Cloud Private Edition, ABAP Platform, and other ABAP-based systems on affected kernel lines.
From Message Server port 36NN, a crafted registration makes the attacker's IP trusted across the cluster; SAP Gateway then accepts external-program invocation from that address and executes as the SAP operating-system account. A patch is available.
OpenStack Octavia, the load-balancer service used by private and public clouds; affected deployments use provider-managed Amphora HAProxy appliances.
On Amphora-backed load balancers, control characters in tenant-controlled cipher or redirect fields inject HAProxy directives that execute as root. That reaches other tenants' TLS keys, the heartbeat key and the control-plane network. OpenStack has published a patch.
Cisco Identity Services Engine, an enterprise network-access-control and BYOD onboarding server deployed as an appliance or virtual machine.
The attacker must be in Wi-Fi range while a legitimate user is onboarding. Weak authentication during portal redirection lets the attacker spoof that user and inherit the session. Cisco has fixed releases, although previously built affected images remain accepted.
libheif, a cross-platform HEIF/AVIF decoding and encoding library used by image-processing services and desktop applications.
A shallow-copied itai timestamp pointer produces a controllable double free during transcoding. Researchers used it for tcache poisoning, overwrote a GOT entry and invoked system() against version 1.23.4. A fix is announced, but no unattended mail, messaging, thumbnail or public-upload route to the required re-encode path has been shown.
Meta Box AIO and the standalone Meta Box Frontend Submission and Meta Box User Profile extensions for WordPress sites.
On sites exposing the affected optional components, an attacker-selected object ID reaches form processing without the render-time authorization check. The attacker can replace page content with a registration shortcode that selects the administrator role and automatic login. Meta Box AIO is fixed, but fixed standalone-extension versions were not established.
CRI-O, a Linux container runtime used by Kubernetes and OpenShift nodes.
Where checkpoint restore and CRIU are enabled, saved credentials, capabilities, no_new_privs and seccomp state can replace the requested securityContext. The restored process can therefore start as root with full capabilities and no seccomp. A fix is announced, but pre-fix checkpoint images remain accepted.
getID3, a PHP audio/video metadata library embedded in web applications and vendored in WordPress core.
If XML-bearing media reaches XML2array(), failure to disable external entities is suppressed and parsing continues, permitting local-file reads or SSRF. We still do not have a demonstrated WordPress delivery path.
Veeam Agent for Microsoft Windows, endpoint-backup software installed on Windows workstations and servers.
A local standard user can read an elevated session UID from the Veeam service log, reuse it through the gRPC named pipe and submit a command executed as SYSTEM because the UID is not bound to its original user or connection. A fixed build exists, but affected end-of-life systems remain in scope.
Linux kernel Bluetooth hosts with L2CAP channels using Enhanced Retransmission or streaming mode.
A short ERTM or streaming frame reaches missing minimum-length checks before the control field or optional FCS is read. Pairing requirements depend on the exposed service, and no public stock-host reproduction establishes a crash, disclosure or other observable consequence.
ZTE SmartLife Android and iOS clients and their internet-facing cloud account backend for ZTE smart-home devices.
Recoverable client secrets enable signed requests, an oracle returns the backend account ID, and the reset endpoint accepts a new password without a verified reset transaction. The researcher reproduced password replacement and login against controlled accounts. A fix is published, but it was not reviewed for this brief, so this cannot lead.
Zyxel GS1900-series smart managed Ethernet switches running embedded switch firmware.
The documented boundary is LAN access to the management service, where a crafted HTTP request triggers the overflow. We do not know the incidents' initial network position, whether attackers obtained controlled command execution or the resulting privilege. Zyxel's fix was not reviewed for this brief, so this cannot lead.
Lantronix SLC 9000, SLC 8000, EMG 8500 and EMG 7500 autonomous out-of-band console-management appliances for serial-connected infrastructure.
Authentication bypass or predictable session tokens reach arbitrary-write functionality that the vendor says leads to code execution. The portal's default bind interface, the execution UID and the exact capability against attached serial devices remain unknown. The published fixes were not reviewed for this brief, so this cannot lead.
Lantronix SLC 9000, SLC 8000, EMG 8500 and EMG 7500 autonomous out-of-band console-management appliances.
A caller who can reach either listener can select a destination and make the controller originate an SSH or Telnet connection into networks unavailable from the caller's position. The default listener interface is not stated, and the published fixes were not reviewed for this brief, so this cannot lead.
Zephyr RTOS devices built with the experimental USB host stack enabled.
A device-controlled configuration descriptor can fail validation after its buffer is freed, leaving cleanup to free the dangling pointer again. The documented outcome is a kernel panic in an experimental, disabled-by-default stack with a dedicated heap. The published fix was not reviewed for this brief, so this cannot lead.
WebKit geolocation permission UI in WKWebView and the built-in iOS geolocation provider.
A controlled page requests geolocation and starts a cross-origin navigation while its document remains active. WebKit derives the prompt's displayed origin from the provisional destination rather than the requesting document.
If the user trusts that label and grants permission, the original document receives the result. The upstream commit documents the condition and adds regression tests, but the supplied evidence does not establish a public exploit or settle patch status.
No additional findings today.
No new signed-component revocation, bootloader primitive or recently demonstrated boot-chain bypass survived review.
Commercial rogue-cell attacks, two demonstrated vCenter entry paths and the Octavia tenant escape changed the research surface.
The same brief, every morning. One email a day, nothing else.
fullchain.sh follows the day’s disclosures from bug to shell — what each one enables, what it links to, and where the fix left the primitive in place.
Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.