9.1
CVSSv3

CVE-2022-24936

Published: 02/11/2022 Updated: 03/11/2022
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Out-of-Bounds error in GBL parser in Silicon Labs Gecko Bootloader version 4.0.1 and previous versions allows malicious user to overwrite flash Sign key and OTA decryption key via malicious bootloader upgrade.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

silabs gecko bootloader