Show filters
98 Total Results
Displaying 51-60 of 98
Sort by:
Attacker Value
Unknown

CVE-2023-24585

Disclosure Date: November 14, 2023 (last updated November 18, 2023)
An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.
Attacker Value
Unknown

CVE-2023-41096

Disclosure Date: October 26, 2023 (last updated September 26, 2024)
Missing Encryption of Security Keys vulnerability in Silicon Labs Ember ZNet SDK on 32 bit, ARM (SecureVault High modules) allows potential modification or extraction of network credentials stored in flash. This issue affects Silicon Labs Ember ZNet SDK: 7.3.1 and earlier.
Attacker Value
Unknown

CVE-2023-41095

Disclosure Date: October 26, 2023 (last updated September 26, 2024)
Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) allows potential modification or extraction of network credentials stored in flash. This issue affects Silicon Labs OpenThread SDK: 2.3.1 and earlier.
Attacker Value
Unknown

CVE-2023-3487

Disclosure Date: October 20, 2023 (last updated September 26, 2024)
An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage slots.
Attacker Value
Unknown

CVE-2020-27630

Disclosure Date: October 10, 2023 (last updated October 14, 2023)
In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.
Attacker Value
Unknown

CVE-2023-41094

Disclosure Date: October 04, 2023 (last updated September 26, 2024)
TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Release of Resource after Effective Lifetime may allow a device to be added outside of valid TouchLink range or pairing duration This issue affects Ember ZNet 7.1.x from 7.1.3 through 7.1.5; 7.2.x from 7.2.0 through 7.2.3; Version 7.3 and later are unaffected
Attacker Value
Unknown

CVE-2023-3024

Disclosure Date: September 29, 2023 (last updated October 09, 2023)
Forcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access.
Attacker Value
Unknown

CVE-2023-4041

Disclosure Date: August 23, 2023 (last updated September 26, 2024)
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code Injection, Authentication Bypass.This issue affects "Standalone" and "Application" versions of Gecko Bootloader.
Attacker Value
Unknown

CVE-2023-3488

Disclosure Date: July 28, 2023 (last updated October 08, 2023)
Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via malformed GBL file.
Attacker Value
Unknown

CVE-2023-3110

Disclosure Date: June 21, 2023 (last updated October 08, 2023)
Description: A vulnerability in SiLabs Unify Gateway 1.3.1 and earlier allows an unauthenticated attacker within Z-Wave range to overflow a stack buffer, leading to arbitrary code execution.