Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gqwg-33mc-9c6j

Опубликовано: 28 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.2

Описание

A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attacker with physical access to the MIB3 ECU to bypass firmware signature verification and run arbitrary code in the infotainment system at boot process.

A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attacker with physical access to the MIB3 ECU to bypass firmware signature verification and run arbitrary code in the infotainment system at boot process.

EPSS

Процентиль: 2%
0.00014
Низкий

5.2 Medium

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 5.2
nvd
7 месяцев назад

A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attacker with physical access to the MIB3 ECU to bypass firmware signature verification and run arbitrary code in the infotainment system at boot process.

EPSS

Процентиль: 2%
0.00014
Низкий

5.2 Medium

CVSS3

Дефекты

CWE-120