📦 S1

by Sonos

🔍 What is S1?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-24049

CRITICAL CVSS 9.8 Feb 18, 2022

This is a critical remote code execution vulnerability in Sonos One Speaker systems that allows unauthenticated attackers to execute arbitrary code as root. The flaw exists in the ALAC audio codec imp...

CVE-2025-1049

HIGH CVSS 8.8 Apr 23, 2025

A heap-based buffer overflow vulnerability in Sonos Era 300 speakers allows network-adjacent attackers to execute arbitrary code without authentication by sending specially crafted ID3 data. This affe...

CVE-2023-27352

HIGH CVSS 8.8 Apr 20, 2023

This vulnerability allows attackers on the same network to execute arbitrary code with root privileges on Sonos One speakers without authentication. The flaw exists in how the speaker processes SMB di...

CVE-2023-27355

HIGH CVSS 8.8 Apr 20, 2023

This is a critical buffer overflow vulnerability in Sonos One Speaker's MPEG-TS parser that allows network-adjacent attackers to execute arbitrary code as root without authentication. The vulnerabilit...