Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
silabs gecko software development kit - vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-24939
A malformed packet containing an invalid destination address, causes a stack overflow in the Ember ZNet stack. This causes an assert which leads to a reset, immediately clearing the error.
Silabs Zigbee Emberznet -
Silabs Gecko Software Development Kit -
NA
CVE-2023-27882
A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-28379
A memory corruption vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-31247
A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-25181
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted set of network packets can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-24585
An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-28391
A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01. Specially crafted network packets can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
Weston-embedded Cesium Net 3.07.01
Weston-embedded Uc-http 3.01.01
Silabs Gecko Software Development Kit 4.3.1
NA
CVE-2023-5310
A denial of service vulnerability exists in all Silicon Labs Z-Wave controller and endpoint devices running Z-Wave SDK v7.20.3 (Gecko SDK v4.3.3) and previous versions. This attack can be carried out only by devices on the network sending a stream of packets to the device.
Silabs Z-wave Software Development Kit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3