VYPR
Unrated severityNVD Advisory· Published Aug 23, 2023· Updated Oct 3, 2024

Second Stage Gecko Bootloader GBL Parser Buffer Overrun Vulnerability

CVE-2023-4041

Description

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code Injection, Authentication Bypass.This issue affects "Standalone" and "Application" versions of Gecko Bootloader.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.