CNNVD-202506-3636 Information

CNNVD ID

CNNVD-202506-3636

CVE-2023-28905

  • CNNVD Published: 2025-06-28

Description (Chinese)

Volkswagen MIB3 Infotainment是德国大众汽车(Volkswagen)公司的一款汽车上的信息娱乐系统。 Volkswagen MIB3 Infotainment存在安全漏洞,该漏洞源于图像处理二进制文件中的堆缓冲区溢出,可能导致攻击者执行任意代码。

Description (English)

Volkswagen MIB3 Information is an information and entertainment system in a car owned by Volkswagen. There is a security loophole in Volkswagen MIB3 Information, which stems from the spilling of a stack of buffers in the image-processing binary documents, which could lead to the perpetrators being subjected to arbitrary codes.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

大众汽车

Published

2025-06-28

Last Modified

2026-02-24

References

https://asrg.io/security-advisories/vulnerabilities-in-volkswagen-mib3-infotainment-part-2/ https://i.blackhat.com/EU-24/Presentations/EU-24-Parnishchev-OverTheAirVW.pdf https://pcacybersecurity.com/resources/advisory/vulnerabilities-in-vw-mib3-infotainment-2 https://access.redhat.com/security/cve/cve-2023-28905

Patch

https://www.volkswagen.co.uk/en.html

Share on: