ZeroHour

CVE-2023-41095

CVSS 3.1
9.1 critical
EPSS
<1%p11
Published
()
Modified
Description

Missing Encryption of Security Keys vulnerability in Silicon Labs OpenThread SDK on 32 bit, ARM (SecureVault High modules) allows potential modification or extraction of network credentials stored in flash. This issue affects Silicon Labs OpenThread SDK: 2.3.1 and earlier.

Vendors
silabs
Products
openthread sdk
Weakness
CWE-312, CWE-311
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.