Unrated severityNVD Advisory· Published Feb 13, 2025· Updated Mar 18, 2025
CVE-2023-34401
CVE-2023-34401
Description
Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside profile folder there is a file, which is encoded with proprietary UD2 codec. Due to missed size checks in the enapsulate file, attacker can achieve Out-of-Bound Read in heap memory.
Affected products
2- Mercedes-Benz/NTG6description
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.