Uninitialized variable in Gecko Bootloader can leak secure stack
CVE-2023-3488
3.8LOW
What is CVE-2023-3488?
Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via malformed GBL file.
Affected Version(s)
Gecko Bootloader 0 <= 4.3.0