9.8
CVSSv3

CVE-2023-23305

Published: 23/05/2023 Updated: 30/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The GarminOS TVM component in CIQ API version 1.0.0 up to and including 4.1.7 is vulnerable to various buffer overflows when loading binary resources. A malicious application embedding specially crafted resources could hijack the execution of the device's firmware.

Vulnerable Product Search on Vulmon Subscribe to Product

garmin connect-iq