Vulnerabilities > Silabs > Gecko Software Development KIT > 4.4.0

DATE CVE VULNERABILITY TITLE RISK
2024-02-21 CVE-2024-22473 Insufficient Entropy vulnerability in Silabs Gecko Software Development KIT
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices.
network
low complexity
silabs CWE-331
7.5
2023-09-29 CVE-2023-3024 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silabs Gecko Software Development KIT
Forcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access.
low complexity
silabs CWE-119
6.5