CVE-2023-39075
Last modified
CVE-2023-39075 is a medium-severity vulnerability rated 4.6/10 on the CVSS scale. Renault Zoe EV 2021 automotive infotainment system versions 283C35202R to 283C35519R (builds 11.10.2021 to 16.01.2023) allows attackers to crash the infotainment system by sending arbitrary USB data via a USB device.. EPSS estimates a 0.45% chance of exploitation in the next 30 days.
Description
Renault Zoe EV 2021 automotive infotainment system versions 283C35202R to 283C35519R (builds 11.10.2021 to 16.01.2023) allows attackers to crash the infotainment system by sending arbitrary USB data via a USB device.
Metrics
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Renault | Zoe Ev 2021 Firmware | >= 11.10.2021, <= 16.01.2023 |
References
- https://blog.jhyeon.dev/posts/vuln/202307/renault-zoe/Exploit, Third Party Advisory
- https://blog.jhyeon.dev/posts/vuln/202307/renault-zoe/Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-39075?
How severe is CVE-2023-39075?
How do I fix CVE-2023-39075?
Are you affected by CVE-2023-39075?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
