Vulnerabilities > Silabs > Gecko Software Development KIT > High

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2023-6874 Improper Check for Unusual or Exceptional Conditions vulnerability in Silabs Gecko Software Development KIT
Prior to v7.4.0, Ember ZNet is vulnerable to a denial of service attack through manipulation of the NWK sequence number
network
low complexity
silabs CWE-754
7.5
2024-02-02 CVE-2023-6387 Incorrect Calculation of Buffer Size vulnerability in Silabs Gecko Software Development KIT
A potential buffer overflow exists in the Bluetooth LE HCI CPC sample application in the Gecko SDK which may result in a denial of service or remote code execution
high complexity
silabs CWE-131
7.5
2023-12-21 CVE-2023-41097 Information Exposure Through Discrepancy vulnerability in Silabs Gecko Software Development KIT
An Observable Timing Discrepancy, Covert Timing Channel vulnerability in Silabs GSDK on ARM potentially allows Padding Oracle Crypto Attack on CBC PKCS7.This issue affects GSDK: through 4.4.0.
network
low complexity
silabs CWE-203
7.5
2023-05-18 CVE-2023-0965 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_cryptoacc_transparent_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-1132 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_se_driver_key_agreement in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-2481 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_se_opaque_import_key in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-32096 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-32097 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-32098 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_se_sign_message in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5
2023-05-18 CVE-2023-32099 Unspecified vulnerability in Silabs Gecko Software Development KIT
Compiler removal of buffer clearing in sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
network
low complexity
silabs
7.5