PT-2017-19088 · Infineon · Infineon S-Gold 2

Jesse Michael

+2

·

Publicado

2017-08-07

·

Atualizado

2025-05-06

·

CVE-2017-9633

CVSS v2.0

8.3

Alta

VetorAV:A/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Infineon S-Gold 2 (PMB 8876) chipset versions used in various vehicle models produced between 2009-2016
Description An issue with improper restriction of operations within the bounds of a memory buffer was found. This issue may allow an attacker to access and control memory, potentially enabling remote code execution on the baseband radio processor of the Telematics Control Unit (TCU). The vulnerability is related to the temporary mobile subscriber identity (TMSI).
Recommendations For the Infineon S-Gold 2 (PMB 8876) chipset used in the affected vehicle models, consider restricting access to the vulnerable TMSI component until a patch or fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-9633

Produtos afetados

Infineon S-Gold 2