CVE-2023-32099 Information

Description

Compiler removal of buffer clearing in

sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier results in key material duplication to RAM.

Reference

https://github.com/SiliconLabs/gecko_sdk https://community.silabs.com/sfc/servlet.shepherd/document/download/0698Y00000U19lGQAR?operationContext=S1

Share on: