First published: Thu Feb 13 2025(Updated: )
Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Some values of this table are serialized archive according boost library. The boost library contains a vulnerability/null pointer dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mercedes-benz Headunit NTG6 | ||
Boost |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34398 is classified as a vulnerability that can potentially lead to a null pointer dereference.
To address CVE-2023-34398, ensure that your Mercedes-Benz NTG6 system is updated with the latest firmware that mitigates this vulnerability.
CVE-2023-34398 affects the Mercedes-Benz NTG6 head unit and the Boost library used within it.
CVE-2023-34398 may lead to crashes or unintended behaviors in the Mercedes-Benz NTG6 head unit due to the null pointer dereference.
If your vehicle uses the Mercedes-Benz NTG6 head unit and is relying on the vulnerable Boost library, it may be at risk.