First published: Tue Jul 18 2023(Updated: )
This vulnerability allows local attackers to escalate privileges on affected Tesla Model 3 vehicles. An attacker must first obtain the ability to execute code on the wifi subsystem in order to exploit this vulnerability.
Affected Software | Affected Version | How to fix |
---|---|---|
Tesla Model 3 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-23-971 is considered high due to the potential for privilege escalation on affected Tesla Model 3 vehicles.
To fix ZDI-23-971, Tesla recommends applying the latest firmware updates to the Model 3 vehicle.
Owners of Tesla Model 3 vehicles are affected by ZDI-23-971 if their vehicles have not been updated with the latest security patches.
Attackers can exploit ZDI-23-971 by gaining access to the wifi subsystem and executing malicious code to escalate privileges.
Possible attacks with ZDI-23-971 include local privilege escalation, which may allow an attacker to gain more control over the vehicle's systems.