First published: Sun Mar 24 2019(Updated: )
The renderer process in the entertainment system on Tesla Model 3 vehicles mishandles JIT compilation, which allows attackers to trigger firmware code execution, and display a crafted message to vehicle occupants.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tesla Model 3 Firmware | ||
Tesla Model 3 | ||
All of | ||
Tesla Model 3 Firmware | ||
Tesla Model 3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9977 is considered a high severity vulnerability due to its potential for firmware code execution.
To fix CVE-2019-9977, ensure that your Tesla Model 3 firmware is updated to the latest version provided by Tesla.
CVE-2019-9977 can allow attackers to execute arbitrary firmware code and display crafted messages to occupants.
CVE-2019-9977 affects the Tesla Model 3 firmware, so if your model's firmware is outdated, it may be vulnerable.
CVE-2019-9977 was reported during the Pwn2Own hacking competition, highlighting vulnerabilities in the Tesla system.