📦 Era 100 Firmware

by Sonos

🔍 What is Era 100 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-5267

HIGH CVSS 8.8 Jun 6, 2024

This vulnerability allows network-adjacent attackers to execute arbitrary code with root privileges on Sonos Era 100 smart speakers without authentication. The flaw exists in SMB2 message handling whe...

CVE-2024-5269

HIGH CVSS 8.8 Jun 6, 2024

A use-after-free vulnerability in Sonos Era 100's SMB2 message handling allows network-adjacent attackers to execute arbitrary code as root without authentication. This affects Sonos Era 100 smart spe...

CVE-2024-5256

MEDIUM CVSS 4.3 Jun 6, 2024

An integer underflow vulnerability in SMB2 message handling on Sonos Era 100 smart speakers allows network-adjacent attackers to read sensitive memory contents without authentication. This information...