CVE-2024-12975: Silicon Labs Simplicity SDK

Low severity, CVSS 1.0. EPSS: 0.2% chance of exploitation in the next 30 days.

A buffer overread can occur in the CPC application when operating in full duplex SPI upon receiving an invalid packet over the SPI interface.

Affected products

  • Silicon Labs Simplicity SDK: before 2024.12.1 (fixed in 2024.12.1)

Published 2025-03-07. Last modified 2026-06-17.