Show filters
30 Total Results
Displaying 1-10 of 30
Sort by:
Attacker Value
Unknown
CVE-2024-22473
Disclosure Date: February 21, 2024 (last updated February 13, 2025)
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0.
0
Attacker Value
Unknown
CVE-2023-45318
Disclosure Date: February 20, 2024 (last updated February 13, 2025)
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004. A specially crafted network packet can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2024-0240
Disclosure Date: February 15, 2024 (last updated February 06, 2025)
A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop.
0
Attacker Value
Unknown
CVE-2023-6874
Disclosure Date: February 05, 2024 (last updated February 10, 2024)
Prior to v7.4.0, Ember ZNet is vulnerable to a denial of service attack through manipulation of the NWK sequence number
0
Attacker Value
Unknown
CVE-2023-6387
Disclosure Date: February 02, 2024 (last updated February 10, 2024)
A potential buffer overflow exists in the Bluetooth LE HCI CPC sample application in the Gecko SDK which may result in a denial of service or remote code execution
0
Attacker Value
Unknown
CVE-2023-5138
Disclosure Date: January 03, 2024 (last updated January 11, 2024)
Glitch detection is not enabled by default for the CortexM33 core in Silicon Labs secure vault high parts EFx32xG2xB, except EFR32xG21B.
0
Attacker Value
Unknown
CVE-2023-4280
Disclosure Date: January 02, 2024 (last updated January 10, 2024)
An unvalidated input in Silicon Labs TrustZone implementation in v4.3.x and earlier of the Gecko SDK allows an attacker to access the trusted region of memory from the untrusted region.
0
Attacker Value
Unknown
CVE-2023-41097
Disclosure Date: December 21, 2023 (last updated September 26, 2024)
An Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0.
0
Attacker Value
Unknown
CVE-2023-4020
Disclosure Date: December 15, 2023 (last updated December 20, 2023)
An unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementation allows reading/writing of memory in the secure region of memory from the non-secure region of memory.
0
Attacker Value
Unknown
CVE-2023-31247
Disclosure Date: November 14, 2023 (last updated November 18, 2023)
A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
0