CVE-2023-2687: Buffer Overflow
Published Jun 2, 2023
·Updated
Buffer overflow in Platform CLI component in Silicon Labs Gecko SDK v4.2.1 and earlier allows user to overwrite limited structures on the heap.
Affected Software
1 affected component
Silabs Gecko Software Development Kit<=4.2.1
Event History
Jun 2, 2023
CVE Published
via MITRE·03:56 PM
Data Sourced
via MITRE·03:56 PM
DescriptionSeverityWeakness
Data Sourced
04:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this buffer overflow vulnerability?
The vulnerability ID for this buffer overflow vulnerability is CVE-2023-2687.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is Silicon Labs Gecko SDK version 4.2.1 and earlier.
3
What is the severity of CVE-2023-2687?
The severity of CVE-2023-2687 is low, with a severity value of 3.3.
4
How can this buffer overflow vulnerability be exploited?
This buffer overflow vulnerability can be exploited by allowing a user to overwrite limited structures on the heap.
5
Is there a fix available for this vulnerability?
Yes, there is a fix available for this vulnerability. It is recommended to update to a version of Silicon Labs Gecko SDK that is later than version 4.2.1.