← Back

CVE-2024-3297

nvd nist
Published: Jul 24, 2024Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

An issue in the Certificate Authenticated Session Establishment (CASE) protocol for establishing secure sessions between two devices, as implemented in the Matter protocol versions before Matter 1.1 allows an attacker to replay manipulated CASE Sigma1 messages to make the device unresponsive until the device is power-cycled.

Affected (1)

Products: Csa Iot: Matter
1 product
Matter
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.