First published: Fri Dec 15 2023(Updated: )
A denial of service vulnerability exists in all Silicon Labs Z-Wave controller and endpoint devices running Z-Wave SDK v7.20.3 (Gecko SDK v4.3.3) and earlier. This attack can be carried out only by devices on the network sending a stream of packets to the device.
Credit: product-security@silabs.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Silabs Z-wave Software Development Kit | <=7.20.2.0 | |
Any of | ||
Silabs Z-wave Long Range 700 | ||
Silabs Z-wave Long Range 800 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5310 is classified as a denial of service vulnerability that affects certain Silicon Labs Z-Wave devices.
To fix CVE-2023-5310, users should upgrade to the latest version of the Silicon Labs Z-Wave Software Development Kit.
CVE-2023-5310 affects all Silicon Labs Z-Wave controller and endpoint devices running Z-Wave SDK v7.20.3 and earlier.
CVE-2023-5310 can only be exploited by devices on the same network sending a stream of packets.
The impact of CVE-2023-5310 is a denial of service, potentially disrupting the functionality of affected Z-Wave devices.