CNNVD-202507-3283 Information

CNNVD ID

CNNVD-202507-3283

CVE-2025-2329

  • CNNVD Published: 2025-07-25

Description (Chinese)

Silicon Labs OpenThread RCP是美国Silicon Labs公司的一个协处理器的固件。 Silicon Labs OpenThread RCP存在安全漏洞,该漏洞源于在高流量环境中未能清除SPI传输缓冲区,可能导致发送损坏的数据包,导致主机重置RCP,造成拒绝服务。

Description (English)

Silicon Labs OpenThread RCP is a fixture for a co-processor of the United States company Silicon Labs. Silicon Labs OpenThread RCP had a security loophole, which stemmed from the failure to clear the SPI transmission buffer zone in a high-flow environment, which could lead to the sending of damaged data packages, leading to the replacement of the RCP and the denial of services by the mainframe.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

芯科科技

Published

2025-07-25

Last Modified

2026-02-24

References

https://community.silabs.com/069Vm00000SNyueIAD https://github.com/SiliconLabs/gecko_sdk/releases https://github.com/SiliconLabs/simplicity_sdk/releases https://access.redhat.com/security/cve/cve-2025-2329

Patch

https://github.com/SiliconLabs/gecko_sdk/releases

Share on: