CVE-2023-34399

Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Some values of this table are serialized archive according boost library. The version of boost library contains vulnerability integer overflow.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:mercedes-benz:headunit_ntg6_mercedes-benz_user_experience:*:*:*:*:*:*:*:*

History

27 Jun 2025, 16:12

Type Values Removed Values Added
References () https://securelist.com/mercedes-benz-head-unit-security-research/115218/ - () https://securelist.com/mercedes-benz-head-unit-security-research/115218/ - Third Party Advisory
CPE cpe:2.3:a:mercedes-benz:headunit_ntg6_mercedes-benz_user_experience:*:*:*:*:*:*:*:*
First Time Mercedes-benz
Mercedes-benz headunit Ntg6 Mercedes-benz User Experience

13 Feb 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-13 22:15

Updated : 2025-06-27 16:12


NVD link : CVE-2023-34399

Mitre link : CVE-2023-34399


JSON object : View

Products Affected

mercedes-benz

  • headunit_ntg6_mercedes-benz_user_experience
CWE

No CWE.