Vulnerabilities > CVE-2023-2747 - Use of Uninitialized Resource vulnerability in Silabs Gecko Software Development KIT

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
silabs
CWE-908

Summary

The initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is uninitialized. 

Common Weakness Enumeration (CWE)