First published: Fri Jul 12 2024(Updated: )
Use After Free vulnerability in Silicon Labs Bluetooth SDK on 32 bit, ARM may allow an attacker with precise timing capabilities to intercept a small number of packets intended for a recipient that has left the network.This issue affects Silabs Bluetooth SDK: through 8.0.0.
Credit: product-security@silabs.com
Affected Software | Affected Version | How to fix |
---|---|---|
Silabs Bluetooth Low Energy Software Development Kit | <=8.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41093 is classified as a high severity vulnerability due to its potential for packet interception.
To mitigate CVE-2023-41093, upgrade the Silicon Labs Bluetooth SDK to version 8.0.1 or later.
CVE-2023-41093 affects devices using the Silicon Labs Bluetooth Low Energy Software Development Kit up to version 8.0.0.
The use after free vulnerability in CVE-2023-41093 allows attackers to exploit memory that has been freed, potentially leading to unauthorized access of data.
CVE-2023-41093 requires an attacker to have precise timing capabilities, making remote exploitation challenging but possible in certain scenarios.