Lucene search

K

Gecko Bootloader Security Vulnerabilities

cve
cve

CVE-2022-24936

Out-of-Bounds error in GBL parser in Silicon Labs Gecko Bootloader version 4.0.1 and earlier allows attacker to overwrite flash Sign key and OTA decryption key via malicious bootloader upgrade.

9.1CVSS

9AI Score

0.001EPSS

2022-11-02 06:15 PM
22
3
cve
cve

CVE-2023-3487

An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage slots.

7.8CVSS

7.7AI Score

0.0004EPSS

2023-10-20 03:15 PM
21
cve
cve

CVE-2023-4041

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code Injection, Authentication Bypass.This issue affects "Standalo...

9.8CVSS

9.7AI Score

0.001EPSS

2023-08-23 05:15 AM
31