Medium severity6.8NVD Advisory· Published Feb 21, 2024· Updated Jun 17, 2026
CVE-2024-22473
CVE-2024-22473
Description
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0.
Affected products
3- Range: <=4.4.0
- cpe:2.3:a:silabs:gecko_software_development_kit:*:*:*:*:*:*:*:*Range: <=4.4.0
- Range: 0
Patches
Vulnerability mechanics
References
1- community.silabs.com/068Vm000001FrjTnvdPermissions Required
News mentions
0No linked articles in our index yet.