First published: Thu Feb 15 2024(Updated: )
A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop.
Credit: product-security@silabs.com
Affected Software | Affected Version | How to fix |
---|---|---|
Silicon Labs Gecko SDK | <4.3.0 | |
Silicon Labs EFR32 Bluetooth stack |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0240 has a severity rating that indicates a potential impact on system stability due to a memory leak.
To fix CVE-2024-0240, update to the latest version of the Silicon Labs Gecko SDK beyond 4.3.0.
CVE-2024-0240 affects the Silicon Labs EFR32 Bluetooth stack and all related Gecko SDK products up to version 4.3.0.
Exploiting CVE-2024-0240 may cause memory exhaustion preventing Bluetooth operations like advertising and scanning from functioning.
CVE-2024-0240 is not categorized as a remote vulnerability, but it affects Bluetooth operations within local environments.