CVE-2020-9061

medium

Description

Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.

References

https://www.kb.cert.org/vuls/id/142629

https://kb.cert.org/vuls/id/142629

https://ieeexplore.ieee.org/document/9663293

https://github.com/CNK2100/VFuzz-public

https://doi.org/10.1109/ACCESS.2021.3138768

Details

Source: Mitre, NVD

Published: 2022-01-10

Updated: 2022-01-18

Risk Information

CVSS v2

Base Score: 3.3

Vector: CVSS2#AV:A/AC:L/Au:N/C:N/I:N/A:P

Severity: Low

CVSS v3

Base Score: 6.5

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: Medium