Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76qj-23pr-3333

Опубликовано: 02 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 3.8

Описание

Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.7.0 allow a global buffer overflow via crafted messages. Flaws in cf_confirmExecTx() in ethereum_contracts.c can be used to reveal arbitrary microcontroller memory on the device screen or crash the device. With physical access to a PIN-unlocked device, attackers can extract the BIP39 mnemonic secret from the hardware wallet.

Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.7.0 allow a global buffer overflow via crafted messages. Flaws in cf_confirmExecTx() in ethereum_contracts.c can be used to reveal arbitrary microcontroller memory on the device screen or crash the device. With physical access to a PIN-unlocked device, attackers can extract the BIP39 mnemonic secret from the hardware wallet.

EPSS

Процентиль: 13%
0.00042
Низкий

3.8 Low

CVSS3

Дефекты

CWE-120
CWE-125

Связанные уязвимости

CVSS3: 3.8
nvd
почти 3 года назад

Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.7.0 allow a global buffer overflow via crafted messages. Flaws in cf_confirmExecTx() in ethereum_contracts.c can be used to reveal arbitrary microcontroller memory on the device screen or crash the device. With physical access to a PIN-unlocked device, attackers can extract the BIP39 mnemonic secret from the hardware wallet.

EPSS

Процентиль: 13%
0.00042
Низкий

3.8 Low

CVSS3

Дефекты

CWE-120
CWE-125