Vulnerability Details CVE-2024-22473
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.0%
CVSS Severity
CVSS v3 Score 6.8
Products affected by CVE-2024-22473
-
cpe:2.3:a:silabs:gecko_software_development_kit:-
-
cpe:2.3:a:silabs:gecko_software_development_kit:1.0.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.0.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.0.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.0.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.1.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.1.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.1.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.1.3
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.2.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:2.2.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.0.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.0.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.0.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.3
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.4
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.5
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.1.6
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.2.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.2.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.2.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.2.3
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.2.4
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.3.0
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.3.1
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.3.2
-
cpe:2.3:a:silabs:gecko_software_development_kit:4.4.0