First published: Mon Oct 30 2023(Updated: )
An issue discovered in Govee LED Strip v3.00.42 allows attackers to cause a denial of service via crafted Move and MoveWithOnoff commands.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Govee Led Strip Firmware | =3.00.42 | |
Govee LED Strip |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-45956 is high with a CVSS score of 7.5.
Govee LED Strip firmware version 3.00.42 is affected by CVE-2023-45956.
Attackers can cause a denial of service by sending crafted Move and MoveWithOnoff commands to Govee LED Strip firmware version 3.00.42.
Yes, Govee LED Strip firmware version 3.00.42 is vulnerable to CVE-2023-45956.
You can find more information about CVE-2023-45956 in the [GitHub vulnerability report](https://github.com/IoT-Fuzz/IoT-Fuzz/blob/main/Govee%20LED%20Strip%20Vulnerability%20Report.pdf).