Skip to finding
important · Nintendo Switch Wi-Fi

A nearby attacker can execute arbitrary code on an unpatched Nintendo Switch through local wireless networking.

Affects

Nintendo Switch, Switch Lite, and OLED-model game consoles running Nintendo's embedded system software.

The vulnerable function must be active and its temporary network information exposed; crafted traffic then turns a stack overflow into a ROP chain.

Detail and 2 sources

The resulting execution privilege and directly recoverable console data remain undisclosed.

Chain to watch
Map the vulnerable local-wireless service’s process and privilege context.→↓Determine what console data and persistence become reachable after ROP execution.→↓Nintendo has not disclosed the execution privilege or directly accessible data.
Unverified chainAnalyze the pre-23.0.0 local-wireless service and map the ROP execution context.
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Friday, September 11, 2026