CVE Vulnerabilities

CVE-2023-4280

Published: Jan 02, 2024 | Modified: Jan 09, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An unvalidated input in Silicon Labs TrustZone implementation in v4.3.x and earlier of the Gecko SDK allows an attacker to access the trusted region of memory from the untrusted region.

Affected Software

Name Vendor Start Version End Version
Gecko_software_development_kit Silabs 1.0.0 (including) 4.3.2 (including)

References