Found 7 results
Select All Title 正文 Version Advisory No. Type Released Date Fixed Status Download
Security Advisory Concerning ECDSA Secure Boot Issue in ESP32-H2 / ESP32-C5 / ESP32-C61 / ESP32-P4 / ESP32-S31
This security advisory describes an ECDSA Secure Boot issue on ESP32-H2, ESP32-C5, ESP32-C61, ESP32-P4 and ESP32-S31, where ROM-based signature verification at boot may incorrectly accept invalid signatures, allowing an attacker who can modify the signed firmware image in external flash to bypass Secure Boot. The advisory also provides hardware-layer combined protection recommendations and RSA-based Secure Boot solutions for affected products. V1.1 AR2026-006 Security 2026.07.28 Workaround
Bug Advisory Concerning Bootloader Forward Compatibility Issue Affecting OTA Updates on ESP32-C6 / ESP32-H2
This advisory describes a bootloader forward compatibility issue affecting OTA updates on ESP32-C6 and ESP32-H2. Applications built with ESP-IDF v6.0–v6.0.2 may fail to boot when running with older bootloaders due to incompatible CPU memory protection settings, causing the device to reset during startup. This advisory also provides the mitigation methods. V1.0 AR2026-007 Bugs 2026.07.22 Fixed with Commit
Bug Advisory for System Stability Issues When Using PSRAM on ESP32-C5 and ESP32-C61
This advisory describes an issue where the default configuration of ESP-IDF may lead to system instability when using PSRAM on ESP32-C5 and ESP32-C61 chip series, and provides corresponding mitigation measures. V1.0 AR2026-002 Bugs 2026.05.06 Fixed with Commit
ESP32-C61 Series Chips Bug Advisory
This advisory describes four issues in ESP32-C61 series chips related to Bluetooth LE, PSRAM behavior, cryptographic operations, and wireless coexistence stability, and provides mitigation recommendations. V1.0 AR2025-009 Bugs 2026.01.08 Fixed
Usage Instructions for Internal 32kHz RC Oscillator Clock Source in ESP32-C6 and Precaution
This advisory describes the issue with the ESP32-C6 series products where the RC32K_CLK may fail to oscillate in low-temperature scenarios, along with the corresponding solutions. V1.0 AR2024-011 Bugs 2025.02.25 Fixed
Bug Advisory Concerning Applications Using Auto Light Sleep on ESP32-C6 with Certain ESP-IDF Versions
This advisory describes issues with certain ESP32-C6 products in applications where the Wi-Fi and Bluetooth LE modules coexist or when only the Wi-Fi module is initialized and auto light-sleep is enabled, along with the corresponding solutions. V1.0 AR2024-006 Bugs 2024.08.30 Fixed with Commit
Security Advisory Concerning Bypassing Secure Boot and Flash Encryption using CPA and FI attack on ESP32-C3 and ESP32-C6
The advisory focuses on a crucial hardware vulnerability discovered in ESP32-C3 and ESP32-C6 chips. The vulnerability stems from a combination of Correlation Power Analysis (CPA), Fault Injection (FI), and buffer overflow, allowing attackers to bypass the Flash Encryption feature that uses the AES-XTS algorithm, extracting sensitive device information. Additionally, the advisory offers suggestions for hardware and application countermeasures that can effectively mitigate this type of attack. V1.0 AR2023-007 Security 2024.01.08 Notification





Advisory type