CVE-2023-3488
- EPSS 0.08%
- Veröffentlicht 28.07.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 08:17:22
Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via malformed GBL file.
CVE-2023-2747
- EPSS 0.03%
- Veröffentlicht 15.06.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:59:13
The initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is uninitialized.
CVE-2023-2686
- EPSS 0.12%
- Veröffentlicht 15.06.2023 19:15:11
- Zuletzt bearbeitet 21.11.2024 07:59:05
Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payload onto the stack.
CVE-2023-2687
- EPSS 0.04%
- Veröffentlicht 02.06.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 07:59:05
Buffer overflow in Platform CLI component in Silicon Labs Gecko SDK v4.2.1 and earlier allows user to overwrite limited structures on the heap.
CVE-2023-32100
- EPSS 0.09%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:02:42
Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
CVE-2023-0965
- EPSS 0.07%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:11
Compiler removal of buffer clearing in sli_cryptoacc_transparent_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
CVE-2023-1132
- EPSS 0.07%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:38:31
Compiler removal of buffer clearing in sli_se_driver_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
CVE-2023-2481
- EPSS 0.09%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:42
Compiler removal of buffer clearing in sli_se_opaque_import_key in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
CVE-2023-32096
- EPSS 0.08%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:02:42
Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
CVE-2023-32097
- EPSS 0.08%
- Veröffentlicht 18.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:02:42
Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.