PT-2023-24988 · Volkswagen · Volkswagen Discover Media Infotainment System

CVE-2023-34733

·

Publicado

2023-06-16

·

Atualizado

2023-06-26

CVSS v3.1

6.8

Média

VetorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Volkswagen Discover Media Infotainment System Software version 0876
Description A lack of exception handling in the software allows attackers to cause a Denial of Service (DoS) via supplying crafted media files when connecting a device to the vehicle's USB plug and play feature.
Recommendations For version 0876, consider disabling the USB plug and play feature until a patch is available to prevent potential Denial of Service (DoS) attacks. Restrict access to the infotainment system to minimize the risk of exploitation. Avoid using the USB feature with untrusted devices to reduce the risk of supplying crafted media files.

Exploit

Correção

Improper Check for Exceptional Conditions

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-34733

Produtos afetados

Volkswagen Discover Media Infotainment System