First published: Thu May 18 2023(Updated: )
Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
Credit: product-security@silabs.com
Affected Software | Affected Version | How to fix |
---|---|---|
Silabs Gecko Software Development Kit | <=4.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-32100.
The title of the vulnerability is Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.
The affected software is Silicon Labs Gecko Software Development Kit (SDK) v4.2.1 and earlier.
The severity of CVE-2023-32100 is high with a CVSS score of 7.5.
To fix CVE-2023-32100, you should update to a version of Silicon Labs Gecko Platform SDK that is not affected by this vulnerability.