Buffer Overflow Vulnerability in Gecko SDK by Silicon Labs
CVE-2023-2687
2.9LOW
Summary
A buffer overflow vulnerability exists in the Platform CLI component of the Gecko SDK provided by Silicon Labs. This flaw permits a user to overwrite limited structures on the heap, which could lead to unexpected behavior or potential exploitation. Users of Gecko SDK versions 4.2.1 and earlier are advised to evaluate their exposure to this vulnerability and apply the necessary patches to secure their systems.
Affected Version(s)
Gecko SDK 0 <= 4.2.1
References
CVSS V3.1
Score:
2.9
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved