← Back

CVE-2023-4041

nvd nist
Published: Aug 23, 2023Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code Injection, Authentication Bypass.This issue affects "Standalone" and "Application" versions of Gecko Bootloader.

Affected (2)

1 product
Gecko Bootloader
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Silabs
Before 4.2.4
From 4.3.0 to 4.3.2

Timeline

No history available yet.