Denial of Service (DoS) in the Z-Wave S0 NonceGet protocol specification in Silicon Labs Z-Wave 500 series allows local attackers to block S0/S2 protected Z-Wave network via crafted S0 NonceGet Z-Wave packages, utilizing included but absent NodeIDs.
References
Link | Resource |
---|---|
https://github.com/ITSecLab-HSEL/CVE-2022-24611 | Third Party Advisory |
http://z-wave.com | Not Applicable |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Information
Published : 2022-05-17 11:15
Updated : 2022-05-26 08:16
NVD link : CVE-2022-24611
Mitre link : CVE-2022-24611
JSON object : View
CWE
Products Affected
silabs
- zm5202_firmware
- zm5202
- sd3503
- zm5304_firmware
- zm5304
- sd3502_firmware
- sd3503_firmware
- zm5101
- zm5101_firmware
- sd3502