PT-2024-14106 · Silicon · Silicon Labs Ember Znet Sdk
Published
2024-02-23
·
Updated
2024-09-25
·
CVE-2023-51393
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Silicon Labs Ember ZNet SDK versions prior to 7.4.0.0
Description
An uncontrolled resource consumption issue exists due to the allocation of resources without limits. This may enable attackers to trigger a bus fault and crash of the device, requiring a reboot in order to rejoin the network.
Recommendations
For Silicon Labs Ember ZNet SDK versions prior to 7.4.0.0, update to version 7.4.0.0 or later to resolve the issue. As a temporary workaround, consider implementing resource allocation limits to prevent uncontrolled consumption.
Fix
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Silicon Labs Ember Znet Sdk