CVE-2023-3110: Buffer overflow in S0 Decryption on Unify Gateway
Published Jun 21, 2023
·Updated
Description: A vulnerability in SiLabs Unify Gateway 1.3.1 and earlier allows an unauthenticated attacker within Z-Wave range to overflow a stack buffer, leading to arbitrary code execution.
Affected Software
1 affected component
Silabs Unify Software Development Kit<=1.3.1
Event History
Jun 21, 2023
CVE Published
via MITRE·07:44 PM
Data Sourced
via MITRE·07:44 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-3110?
The severity of CVE-2023-3110 is critical with a severity value of 8.8.
2
How does CVE-2023-3110 affect SiLabs Unify Gateway?
CVE-2023-3110 affects SiLabs Unify Gateway 1.3.1 and earlier versions.
3
What is the description of CVE-2023-3110?
CVE-2023-3110 is a vulnerability in SiLabs Unify Gateway that allows an unauthenticated attacker within Z-Wave range to overflow a stack buffer, leading to arbitrary code execution.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-3110?
The CWE IDs for CVE-2023-3110 are 119 and 120.
5
How do I fix the vulnerability CVE-2023-3110?
To fix the CVE-2023-3110 vulnerability, update SiLabs Unify Gateway to version 1.3.2 or later.