silabs.com Vulnerabilities and Affected Products
Vulnerabilities associated with GSDK.
Products
Clear product- GSDK12 vulnerabilities
- Gecko Platform10 vulnerabilities
- Simplicity SDK8 vulnerabilities
- Gecko SDK7 vulnerabilities
- WiseConnect7 vulnerabilities
- Ember ZNet SDK6 vulnerabilities
- BT1223 vulnerabilities
- RS9116 Bluetooth SDK3 vulnerabilities
- SiSDK3 vulnerabilities
- Z/IP Gateway SDK3 vulnerabilities
- Ember ZNet2 vulnerabilities
- Gecko Bootloader2 vulnerabilities
- PC Controller2 vulnerabilities
- Bluetooth SDK1 vulnerability
- Configuration Wizard 21 vulnerability
- CP210 VCP Win 2k1 vulnerability
- CP210x VCP Windows1 vulnerability
- EFR32 BLE SDK1 vulnerability
- EmberZNet1 vulnerability
- Flash Programming Utility1 vulnerability
- OpenThread1 vulnerability
- OpenThread SDK1 vulnerability
- RS9116W1 vulnerability
- SE Firmware1 vulnerability
- Series 2 SoCs and associated modules1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-22473MEDIUM | Uninitialized TRNG used for ECDSA after EM2/EM3 sleep for VSE devicesTRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0. | CVSS6.8v3.1 | EPSS0.396% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-0240MEDIUM | Silicon Labs EFR32 Bluetooth stack denial of service when sending notifications to multiple clientsA memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop. | CVSS6.5v3.1 | EPSS0.36% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-6874HIGH | Zigbee Unauthenticated DoS via NWK Sequence number manipulationPrior to v7.4.0, Ember ZNet is vulnerable to a denial of service attack through manipulation of the NWK sequence number | CVSS7.5v3.1 | EPSS0.351% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-6387HIGH | Incorrect buffer parsing in Bluetooth LE sample code may lead to buffer overflowA potential buffer overflow exists in the Bluetooth LE HCI CPC sample application in the Gecko SDK which may result in a denial of service or remote code execution | CVSS7.5v3.1 | EPSS0.614% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-5138MEDIUM | Glitch detection not active by default in Silicon Labs Secure Vault High devicesGlitch detection is not enabled by default for the CortexM33 core in Silicon Labs secure vault high parts EFx32xG2xB, except EFR32xG21B. | CVSS6.8v3.1 | EPSS0.273% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-4280CRITICAL | Unvalidated input in Silicon Labs TrustZone implementation leads to accessing Trusted memory regionAn unvalidated input in Silicon Labs TrustZone implementation in v4.3.x and earlier of the Gecko SDK allows an attacker to access the trusted region of memory from the untrusted region. | CVSS9.3v3.1 | EPSS0.403% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-41097MEDIUM | Potential Timing vulnerability in CBC PKCS7 padding calculationsAn Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0. | CVSS4.6v3.1 | EPSS0.298% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-4020CRITICAL | Unvalidated input in Silicon Labs PSA Attestation service leads to secure memory access from non-secure memoryAn unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementation allows reading/writing of memory in the secure region of memory from the non-secure region of memory. | CVSS9.0v3.1 | EPSS0.569% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-3487HIGH | Integer overflow in Silicon Labs Gecko Bootloader leads to unbounded memory accessAn integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage slots. | CVSS7.7v3.1 | EPSS0.235% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-3024MEDIUM | Bluetooth LE segmented 'prepare write response' packet may lead to out-of-bounds memory accessForcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access. | CVSS5.9v3.1 | EPSS0.26% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
Uninitialized IV in Silicon Labs SE FW v2.0.0 through v 2.2.1 for internally stored dataThe initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is uninitialized. | CVSS3.1v3.1 | EPSS0.164% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX | |
CVE-2023-0775MEDIUM | Bluetooth LE Invalid prepare write request command leads to denial of serviceAn invalid ‘prepare write request’ command can cause the Bluetooth LE stack to run out of memory and fail to be able to handle subsequent connection requests, resulting in a denial-of-service. CWE-20Mar 28, 2023 | CVSS6.5v3.1 | EPSS0.312% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |