Cryptographic Weakness in SiXG301's SYMCRYPTO Engine by Silicon Labs
CVE-2026-4930

7.1HIGH

Key Information:

Vendor

Silabs.com

Vendor
CVE Published:
25 June 2026

What is CVE-2026-4930?

The SYMCRYPTO engine in Silicon Labs' SiXG301 device, which accelerates AES encryption and hashing operations, presents a vulnerability. If an attacker manages to execute code on the impacted device, they can manipulate certain seed values, thus weakening the DPA countermeasures. This reduction in entropy increases the risk of key extraction through Differential Power Analysis (DPA) attacks, making the cryptographic keys stored in SYMCRYPTO more susceptible to unauthorized access.

Affected Version(s)

Simplicity SDK 0

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.