The SJA1000 CAN controller driver backend automatically attempt to recover from a bus-off event when built with CONFIG_CAN_AUTO_BUS_OFF_RECOVERY=y. This results in calling k_sleep() in IRQ context, causing a fatal exception.
References
| Link | Resource |
|---|---|
| https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-98mc-rj7w-7rpv | Vendor Advisory |
Configurations
History
18 Oct 2023, 19:54
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| First Time |
Zephyrproject
Zephyrproject zephyr |
|
| CPE | cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:* | |
| CWE | NVD-CWE-Other | |
| References | (MISC) https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-98mc-rj7w-7rpvĀ - Vendor Advisory |
13 Oct 2023, 12:47
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-10-13 00:15
Updated : 2023-10-18 19:54
NVD link : CVE-2023-5563
Mitre link : CVE-2023-5563
JSON object : View
Products Affected
zephyrproject
- zephyr
CWE
