CVE-2024-0240: Silicon Labs EFR32 Bluetooth stack denial of service when sending notifications to multiple clients
A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0240?
CVE-2024-0240 has a severity rating that indicates a potential impact on system stability due to a memory leak.
How do I fix CVE-2024-0240?
To fix CVE-2024-0240, update to the latest version of the Silicon Labs Gecko SDK beyond 4.3.0.
What products are affected by CVE-2024-0240?
CVE-2024-0240 affects the Silicon Labs EFR32 Bluetooth stack and all related Gecko SDK products up to version 4.3.0.
What happens if CVE-2024-0240 is exploited?
Exploiting CVE-2024-0240 may cause memory exhaustion preventing Bluetooth operations like advertising and scanning from functioning.
Is CVE-2024-0240 a remote vulnerability?
CVE-2024-0240 is not categorized as a remote vulnerability, but it affects Bluetooth operations within local environments.