CVE-2025-2329: High traffic causes corrupt SPI packets in OpenThread leading to denial of service
In high traffic environments, a Silicon Labs OpenThread RCP (see impacted versions) fails to clear the SPI transmit buffer and may send a corrupt packet over SPI to its host, causing the host to reset the RCP which results in a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2329?
CVE-2025-2329 is classified as a denial of service vulnerability.
How do I fix CVE-2025-2329?
To fix CVE-2025-2329, ensure that you are using the latest firmware version of Silicon Labs OpenThread RCP that addresses the transmit buffer issue.
What systems are affected by CVE-2025-2329?
CVE-2025-2329 affects the Silicon Labs OpenThread RCP in high traffic environments.
What can occur due to CVE-2025-2329?
CVE-2025-2329 can cause the host to reset the RCP, leading to a denial of service condition.
How can I determine if my device is vulnerable to CVE-2025-2329?
You can determine if your device is vulnerable to CVE-2025-2329 by checking if it utilizes an affected version of Silicon Labs OpenThread RCP.