Lucene search

K
cve[email protected]CVE-2023-41094
HistoryOct 04, 2023 - 9:15 p.m.

CVE-2023-41094

2023-10-0421:15:09
CWE-672
CWE-772
web.nvd.nist.gov
26
cve
touchlink
ember znet
security
exploitation
vulnerability

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

9.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

39.3%

TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Release of Resource after Effective Lifetime may allow a device to be added outside of valid TouchLink range or pairing duration

This issue affects Ember ZNet 7.1.x from 7.1.3 through 7.1.5; 7.2.x from 7.2.0 through 7.2.3; Version 7.3 and later are unaffected

Affected configurations

NVD
Node
silabsemberznetRange7.1.37.1.5
OR
silabsemberznetRange7.2.07.2.3

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "modules": [
      "TouchLink"
    ],
    "platforms": [
      "32 bit",
      "ARM"
    ],
    "product": "Ember ZNet",
    "repo": "https://github.com/SiliconLabs/gecko_sdk",
    "vendor": "Silicon Labs",
    "versions": [
      {
        "lessThanOrEqual": "7.1.5",
        "status": "affected",
        "version": "7.1.3",
        "versionType": "7.1.x"
      },
      {
        "lessThanOrEqual": "7.2.3",
        "status": "affected",
        "version": "7.2.0",
        "versionType": "7.2.x"
      },
      {
        "status": "unaffected",
        "version": "7.3.0"
      }
    ]
  }
]

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

9.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

39.3%

Related for CVE-2023-41094