Lucene search

K
cveNozomiCVE-2023-51456
HistoryApr 02, 2024 - 11:15 a.m.

CVE-2023-51456

2024-04-0211:15:50
CWE-787
CWE-125
Nozomi
web.nvd.nist.gov
27
input validation dji drone mavic 3 pro mavic 3 classic mavic 3 enterprise matrice 300 matrice m30 mini 3 pro out-of-bound read/write memory leak arbitrary code execution

CVSS3

6.8

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0

Percentile

9.0%

A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to trigger an out-of-bound read/write into the process memory through a crafted payload due to a missing input sanity check in the v2_pack_array_to_msg function implemented in the libv2_sdk.so library imported by the v2_sdk_service binary implementing the service, potentially leading to a memory information leak or an arbitrary code execution. Affected models are Mavic 3 Pro until v01.01.0300, Mavic 3 until v01.00.1200, Mavic 3 Classic until v01.00.0500, Mavic 3 Enterprise until v07.01.10.03, Matrice 300 until v57.00.01.00, Matrice M30 until v07.01.0022 and Mini 3 Pro until v01.00.0620.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Mavic 3 Pro",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "01.01.0300",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Mavic 3",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "01.00.1200",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Mavic 3 Classic",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "01.00.0500",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Mavic 3 Enterprise",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "7.01.10.03",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Matrice 300",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "57.00.01.00",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Matrice M30",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "07.01.0022",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Mini 3 Pro",
    "vendor": "DJI",
    "versions": [
      {
        "lessThan": "01.00.0620",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

6.8

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0

Percentile

9.0%

Related for CVE-2023-51456