CVE-2023-5563
The SJA1000 CAN controller driver backend automatically attempt to recover from a bus-off event when built with CONFIG_C
The SJA1000 CAN controller driver backend automatically attempt to recover from a bus-off event when built with CONFIG_CAN_AUTO_BUS_OFF_RECOVERY=y. This results in calling k_sleep() in IRQ context, causing a fatal exception.
HIGH · CVSS 7.1
EPSS 0.00186
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0