PT-2023-27110 · Renault · Renault Easy Link Multimedia System

CVE-2023-39801

·

Publicado

2023-08-24

·

Atualizado

2023-08-29

CVSS v3.1

4.6

Média

VetorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Renault Easy Link Multimedia System Software version 283C35519R
Description The issue is related to a lack of exception handling in the software, allowing attackers to cause a Denial of Service (DoS) by supplying crafted WMA files when connecting a device to the vehicle's USB plug and play feature.
Recommendations For Renault Easy Link Multimedia System Software version 283C35519R, consider disabling the USB plug and play feature until a patch is available to prevent potential Denial of Service (DoS) attacks via crafted WMA files.

Exploit

Correção

Improper Handling of Exceptional Conditions

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-39801

Produtos afetados

Renault Easy Link Multimedia System