Description
Access to critical Unified Diagnostics Services (UDS) of the Modular Infotainment Platform 3 (MIB3) infotainment is transmitted via Controller Area Network (CAN) bus in a form that can be easily decoded by attackers with physical access to the vehicle.
Vulnerability discovered on Škoda Superb III (3V3) - 2.0 TDI manufactured in 2022.
Vulnerability discovered on Škoda Superb III (3V3) - 2.0 TDI manufactured in 2022.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32516 | Access to critical Unified Diagnostics Services (UDS) of the Modular Infotainment Platform 3 (MIB3) infotainment is transmitted via Controller Area Network (CAN) bus in a form that can be easily decoded by attackers with physical access to the vehicle. Vulnerability discovered on Škoda Superb III (3V3) - 2.0 TDI manufactured in 2022. |
References
| Link | Providers |
|---|---|
| https://asrg.io/security-advisories/cve-2023-28896/ |
|
History
No history.
Status: PUBLISHED
Assigner: ASRG
Published:
Updated: 2024-08-02T13:51:38.819Z
Reserved: 2023-03-27T14:51:13.967Z
Link: CVE-2023-28896
No data.
Status : Modified
Published: 2023-12-01T14:15:07.747
Modified: 2024-11-21T07:56:14.073
Link: CVE-2023-28896
No data.
OpenCVE Enrichment
No data.
EUVD