CVE Vulnerabilities

CVE-2023-4020

Published: Dec 15, 2023 | Modified: Dec 19, 2023
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementation allows reading/writing of memory in the secure region of memory from the non-secure region of memory.

Affected Software

Name Vendor Start Version End Version
Gecko_software_development_kit Silabs 1.0.0 (including) 4.4.0 (excluding)

References