CVE-2021-40154
01.12.2021, 15:15
NXP LPC55S69 devices before A3 have a buffer over-read via a crafted wlength value in a GET Descriptor Configuration request during use of USB In-System Programming (ISP) mode. This discloses protected flash memory.Enginsight
Vendor | Product | Version |
---|---|---|
nxp | lpc55s69jbd100_firmware | - |
nxp | lpc55s69jbd100_firmware | - |
nxp | lpc55s69jbd64_firmware | - |
nxp | lpc55s69jbd64_firmware | - |
nxp | lpc55s69jev98_firmware | - |
nxp | lpc55s69jev98_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration