PT-2023-27110 · Renault · Renault Easy Link Multimedia System
CVE-2023-39801
·
Publicado
2023-08-24
·
Atualizado
2023-08-29
CVSS v3.1
4.6
Média
| Vetor | AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Renault Easy Link Multimedia System Software version 283C35519R
Description
The issue is related to a lack of exception handling in the software, allowing attackers to cause a Denial of Service (DoS) by supplying crafted WMA files when connecting a device to the vehicle's USB plug and play feature.
Recommendations
For Renault Easy Link Multimedia System Software version 283C35519R, consider disabling the USB plug and play feature until a patch is available to prevent potential Denial of Service (DoS) attacks via crafted WMA files.
Exploit
Correção
Improper Handling of Exceptional Conditions
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Renault Easy Link Multimedia System