Integer Underflow Vulnerability in Silicon Lab’s PSA Crypto and SE Manager APIs
CVE-2025-14547
2.3LOW
What is CVE-2025-14547?
Silicon Labs' implementation of PSA Crypto and SE Manager EC-JPAKE APIs contains an integer underflow vulnerability during zero-knowledge proof (ZKP) parsing. This flaw can be exploited to trigger a hard fault, resulting in a temporary denial of service, which may disrupt service and affect user accessibility.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Gecko SDK 0 <= 2.5.x
Simplicity SDK 0 <= 2025.6.2
References
CVSS V4
Score:
2.3
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
SecMate, including Maxime Rossi Bellom and Ramtine Tofighi Shirazi
