Show filters
98 Total Results
Displaying 61-70 of 98
Sort by:
Attacker Value
Unknown

CVE-2023-0972

Disclosure Date: June 21, 2023 (last updated October 08, 2023)
Description: A vulnerability in SiLabs Z/IP Gateway 7.18.01 and earlier allows an unauthenticated attacker within Z-Wave range to overflow a stack buffer, leading to arbitrary code execution.
Attacker Value
Unknown

CVE-2023-0971

Disclosure Date: June 21, 2023 (last updated October 08, 2023)
A logic error in SiLabs Z/IP Gateway SDK 7.18.02 and earlier allows authentication to be bypassed, remote administration of Z-Wave controllers, and S0/S2 encryption keys to be recovered.
Attacker Value
Unknown

CVE-2023-0970

Disclosure Date: June 21, 2023 (last updated October 08, 2023)
Multiple buffer overflow vulnerabilities in SiLabs Z/IP Gateway SDK version 7.18.01 and earlier allow an attacker with invasive physical access to a Z-Wave controller device to overwrite global memory and potentially execute arbitrary code.
Attacker Value
Unknown

CVE-2023-0969

Disclosure Date: June 21, 2023 (last updated October 08, 2023)
A vulnerability in SiLabs Z/IP Gateway 7.18.01 and earlier allows an authenticated attacker within Z-Wave range to manipulate an array pointer to disclose the contents of global memory.
Attacker Value
Unknown

CVE-2023-2747

Disclosure Date: June 15, 2023 (last updated September 27, 2024)
The initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is uninitialized.
Attacker Value
Unknown

CVE-2023-2683

Disclosure Date: June 15, 2023 (last updated September 26, 2024)
A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message and cause future legitimate connection attempts to fail. A reset of the device immediately clears the error.
Attacker Value
Unknown

CVE-2023-2686

Disclosure Date: June 15, 2023 (last updated October 08, 2023)
Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payload onto the stack.
Attacker Value
Unknown

CVE-2023-2687

Disclosure Date: June 02, 2023 (last updated September 24, 2024)
Buffer overflow in Platform CLI component in Silicon Labs Gecko SDK v4.2.1 and earlier allows user to overwrite limited structures on the heap.
Attacker Value
Unknown

CVE-2023-32100

Disclosure Date: May 18, 2023 (last updated October 08, 2023)
Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
Attacker Value
Unknown

CVE-2023-32099

Disclosure Date: May 18, 2023 (last updated October 08, 2023)
Compiler removal of buffer clearing in sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.