CVE-2024-8361

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 7, 2025
CWE ID 131

Summary

CVE-2024-8361 is a vulnerability affecting SiWx91x devices. The issue lies in the SHA2/224 algorithm, which returns a hash of 256 bits instead of the expected 224 bits. This error leads to a software assertion and results in a Denial of Service (DoS). If a watchdog is implemented in the device, it will automatically restart once the watchdog expires. However, if no watchdog is present, the device can only be recovered through a hard reset.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share