Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) allows potential modification or extraction of network credentials stored in flash.
This issue affects Silicon Labs OpenThread SDK: 2.3.1 and earlier.
References
Configurations
History
21 Nov 2024, 08:20
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.8 |
References | () https://siliconlabs.lightning.force.com/sfc/servlet.shepherd/document/download/0698Y00000ZkKh7QAF?operationContext=S1 - Permissions Required |
25 Sep 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-312 | |
Summary | (en) Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) allows potential modification or extraction of network credentials stored in flash. This issue affects Silicon Labs OpenThread SDK: 2.3.1 and earlier. |
07 Nov 2023, 20:35
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:silabs:openthread_sdk:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
References | (MISC) https://siliconlabs.lightning.force.com/sfc/servlet.shepherd/document/download/0698Y00000ZkKh7QAF?operationContext=S1 - Permissions Required | |
CWE | CWE-311 | |
First Time |
Silabs
Silabs openthread Sdk |
26 Oct 2023, 15:32
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-10-26 14:15
Updated : 2024-11-21 08:20
NVD link : CVE-2023-41095
Mitre link : CVE-2023-41095
CVE.ORG link : CVE-2023-41095
JSON object : View
Products Affected
silabs
- openthread_sdk