Buffer Overflow Vulnerability in Gecko SDK by Silicon Labs
CVE-2023-2687

2.9LOW

Key Information:

Vendor
Silabs.com
Status
Vendor
CVE Published:
2 June 2023

Summary

A buffer overflow vulnerability exists in the Platform CLI component of the Gecko SDK provided by Silicon Labs. This flaw permits a user to overwrite limited structures on the heap, which could lead to unexpected behavior or potential exploitation. Users of Gecko SDK versions 4.2.1 and earlier are advised to evaluate their exposure to this vulnerability and apply the necessary patches to secure their systems.

Affected Version(s)

Gecko SDK 0 <= 4.2.1

References

CVSS V3.1

Score:
2.9
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-2687 : Buffer Overflow Vulnerability in Gecko SDK by Silicon Labs | SecurityVulnerability.io