CVE-2023-34401
Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside profile folder there is a file, which is encoded with proprietary UD2 codec. Due to missed size checks in the enapsulate file, attacker can achieve Out-of-Bound Read in heap memory.
Vendor
Product
CWE
Yayın Tarihi
2025-02-13 23:15:08
Güncelleme
2025-06-27 16:12:44
Source Identifier
cve@mitre.org
KEV Date Added
-