CVE-2022-24937: Malformed Zigbee packet causes Assert in EmberZNet 7.0.0 or earlier
Published Nov 14, 2022
·Updated
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silicon Labs Ember ZNet allows Overflow Buffers.
Affected Software
1 affected component
Silabs Emberznet=1.0.0
Event History
Nov 14, 2022
CVE Published
via MITRE·05:22 PM
Data Sourced
via MITRE·05:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-24937 vulnerability?
CVE-2022-24937 is an Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silicon Labs Ember ZNet allowing overflow of buffers.
2
What is the severity of CVE-2022-24937 vulnerability?
The severity of CVE-2022-24937 vulnerability is critical with a severity value of 9.8.
3
Which software is affected by CVE-2022-24937 vulnerability?
CVE-2022-24937 vulnerability affects Silicon Labs Ember ZNet version 1.0.0.
4
How can I fix CVE-2022-24937 vulnerability?
To fix CVE-2022-24937 vulnerability, update to the latest version of Silicon Labs Ember ZNet.
5
Where can I find more information about CVE-2022-24937 vulnerability?
You can find more information about CVE-2022-24937 vulnerability on the Silicon Labs GitHub repository and the Silicon Labs support website.