ZDI-CAN-23197: (Pwn2Own) Tesla Model S Iris Modem Race Condition Firewall Bypass Vulnerability
This vulnerability allows network-adjacent attackers to bypass the firewall on the Iris modem in affected Tesla Model S vehicles. Authentication is not required to exploit this vulnerability. The specific flaw exists within the firewall service. The issue results from a failure to obtain the xtables lock. An attacker can leverage this vulnerability to bypass firewall rules.
Other sources
This vulnerability allows network-adjacent attackers to bypass the firewall on the Iris modem in affected Tesla Model S vehicles. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 5.0. The following CVEs are assigned: CVE-2024-6029.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-23197?
The severity of ZDI-CAN-23197 is considered high due to the potential for network-adjacent attackers to bypass firewall protections.
How do I fix ZDI-CAN-23197?
To fix ZDI-CAN-23197, update the Tesla Model S firmware to the latest version provided by Tesla.
What impact does ZDI-CAN-23197 have on the Tesla Model S?
ZDI-CAN-23197 allows unauthorized access to network services, compromising the security of the vehicle's systems.
Is authentication required to exploit ZDI-CAN-23197?
No, authentication is not required to exploit ZDI-CAN-23197, making it more dangerous.
Which models are affected by ZDI-CAN-23197?
ZDI-CAN-23197 specifically affects the Tesla Model S vehicles with the vulnerable firmware.