Known Vulnerabilities for products from Silabs

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Silabs".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-41097 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2023-12-21 2024-01-03
CVE-2023-41096 json Missing Encryption of Security Keys vulnerability in Silicon Labs Ember ZNet SDK on 32 bit, ARM (SecureVault High modules) a... 6.1 - MEDIUM 2023-10-26 2023-11-08
CVE-2023-41095 json Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) al... 9.1 - CRITICAL 2023-10-26 2023-11-07
CVE-2023-41094 json TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Releas... 9.8 - CRITICAL 2023-10-04 2023-10-10
CVE-2023-32100 json Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier re... 7.5 - HIGH 2023-05-18 2023-05-25
CVE-2023-32099 json Compiler removal of buffer clearing in sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier resul... 7.5 - HIGH 2023-05-18 2023-05-25
CVE-2023-32098 json Compiler removal of buffer clearing in sli_se_sign_message in Silicon Labs Gecko Platform SDK v4.2.1 and earlie... 7.5 - HIGH 2023-05-18 2023-05-25
CVE-2023-32097 json Compiler removal of buffer clearing in sli_crypto_transparent_aead_decrypt_tag in Silicon Labs Gecko Platform SDK ... 7.5 - HIGH 2023-05-18 2023-05-25
CVE-2023-32096 json Compiler removal of buffer clearing in sli_crypto_transparent_aead_encrypt_tag in Silicon Labs Gecko Platform SDK ... 7.5 - HIGH 2023-05-18 2023-05-25
CVE-2023-31247 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-28391 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-28379 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-27882 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-25181 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-24585 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 9.8 - CRITICAL 2023-11-14 2023-11-17
CVE-2023-4041 json Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integri... 9.8 - CRITICAL 2023-08-23 2023-08-29
CVE-2023-3488 json Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via... 5.5 - MEDIUM 2023-07-28 2023-08-03
CVE-2023-3487 json An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading f... 7.8 - HIGH 2023-10-20 2023-10-27
CVE-2023-3110 json Description: A vulnerability in SiLabs Unify Gateway 1.3.1 and earlier allows an unauthenticated attacker within Z-Wave range... 8.8 - HIGH 2023-06-21 2023-06-28
CVE-2023-3024 json Forcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access. 6.5 - MEDIUM 2023-09-29 2023-10-06

Known software with vulnerabilities from Silabs

Type Vendor Product Version
ApplicationSilabsBluetooth Low Energy Software Development Kit2.13.0.0