An issue in the Certificate Authenticated Session Establishment (CASE) protocol for establishing secure sessions between two devices, as implemented in the Matter protocol versions before Matter 1.1 allows an attacker to replay manipulated CASE Sigma1 messages to make the device unresponsive until the device is power-cycled.
History

Tue, 10 Sep 2024 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Csa-iot
Csa-iot matter
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:csa-iot:matter:-:*:*:*:*:*:*:*
Vendors & Products Csa-iot
Csa-iot matter

cve-icon MITRE

Status: PUBLISHED

Assigner: Bitdefender

Published: 2024-07-24T08:02:52.777Z

Updated: 2024-08-01T20:05:08.480Z

Reserved: 2024-04-04T08:52:49.854Z

Link: CVE-2024-3297

cve-icon Vulnrichment

Updated: 2024-08-01T20:05:08.480Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-24T08:15:02.880

Modified: 2024-09-10T15:41:15.547

Link: CVE-2024-3297

cve-icon Redhat

No data.