First published: Tue Jul 18 2023(Updated: )
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected Tesla Model 3 vehicles. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploit this vulnerability.
Affected Software | Affected Version | How to fix |
---|---|---|
Tesla Model 3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-23-973 is critical due to the potential for remote code execution.
To fix ZDI-23-973, ensure that your Tesla Model 3 is updated with the latest software patch provided by Tesla.
ZDI-23-973 affects Tesla Model 3 vehicles that have not applied the necessary security updates.
ZDI-23-973 is exploited via a malicious Bluetooth device that pairs with the Tesla Model 3.
Yes, ZDI-23-973 can be exploited remotely provided the attacker has access to a malicious Bluetooth device.