* Unprotected privileged mode access through UDS session in the Blind Spot Detection Sensor ECU firmware in Nissan Altima (2022) allows attackers to trigger denial-of-service (DoS) by unauthorized access to the ECU's programming session.
* No preconditions implemented for ECU management functionality through UDS session in the Blind Spot Detection Sensor ECU in Nissan Altima (2022) allows attackers to disrupt normal ECU operations by triggering a control command without authentication.
References
Link | Resource |
---|---|
https://asrg.io/security-advisories/CVE-2024-6347 | Broken Link |
Configurations
Configuration 1 (hide)
AND |
|
History
16 Aug 2024, 14:33
Type | Values Removed | Values Added |
---|---|---|
First Time |
Nissan-global
Nissan-global altima Nissan-global blind Spot Detection Sensor Ecu Firmware |
|
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:h:nissan-global:altima:2022:*:*:*:*:*:*:* cpe:2.3:o:nissan-global:blind_spot_detection_sensor_ecu_firmware:-:*:*:*:*:*:*:* |
|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
References | () https://asrg.io/security-advisories/CVE-2024-6347 - Broken Link |
15 Aug 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-15 15:15
Updated : 2024-08-16 14:33
NVD link : CVE-2024-6347
Mitre link : CVE-2024-6347
CVE.ORG link : CVE-2024-6347
JSON object : View
Products Affected
nissan-global
- blind_spot_detection_sensor_ecu_firmware
- altima
CWE