Security Advisory

CVE-2023-4489

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-14 23:00:29
Last updated 2025-05-21 14:29:37
Assigner Silabs
State PUBLISHED

Description

The first S0 encryption key is generated with an uninitialized PRNG in Z/IP Gateway products running Silicon Labs Z/IP Gateway SDK v7.18.3 and earlier. This makes the first S0 key generated at startup predictable, potentially allowing network key prediction and unauthorized S0 network access.