Mercedes-Benz head-unit NTG6
cpe:2.3:a:mercedes-benz:headunit_ntg6_mercedes-benz_user_experience:*:*:*:*:*:*:*
- >= 1.81, < 1.81.0
A vulnerability has been identified in the Mercedes-Benz NTG6 head unit, specifically within the user profile import and export functions that utilize the Boost library for serialization. The Boost library version in use is susceptible to an integer overflow vulnerability, which can be exploited during the processing of serialized data.
Exploitation of this vulnerability leads to a heap buffer overflow, causing the 'UserData' service to crash and freeze the system, requiring a hard reset of the Electronic Control Unit (ECU) to restore functionality.
The vulnerability can be reproduced by exporting user profile data to a USB drive, which includes files that, when decoded, exploit the integer overflow vulnerability in the Boost library. This can be done by using the 'UserData' service to initiate a backup export, which creates a profile backup folder containing the necessary files. Once the files are exported, they can be manipulated to trigger the vulnerability during the import process.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.