VulnerabilityAnalyzed
CVE-2024-0240
A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop.
MEDIUM 6.5EPSS 0.36%
Does this matter?
Lower severity and a low EPSS score (0.36%). Track it; it rarely justifies an emergency change on its own.
Description
A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending notifications to multiple clients, this results in all Bluetooth operations, such as advertising and scanning, to stop.
- CVSS 3.1
- 6.5 MEDIUMCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.36% probability · 29th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- silabs/gecko software development kit
- Source
- product-security@silabs.com
References
- https://community.silabs.com/069Vm000001AjEfIAKPermissions Required
- https://github.com/SiliconLabs/gecko_sdkProduct
- https://community.silabs.com/069Vm000001AjEfIAKPermissions Required
- https://github.com/SiliconLabs/gecko_sdkProduct
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.