CVE-2019-18671
Summary
| CVE | CVE-2019-18671 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-12-06 18:15:00 UTC |
| Updated | 2020-02-12 03:15:00 UTC |
| Description | Insufficient checks in the USB packet handling of the ShapeShift KeepKey hardware wallet before firmware 6.2.2 allow out-of-bounds writes in the .bss segment via crafted messages. The vulnerability could allow code execution or other forms of impact. It can be triggered by unauthenticated attackers and the interface is reachable via WebUSB. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Keepkey | Keepkey | - | All | All | All |
| Hardware | Keepkey | Keepkey | - | All | All | All |
| Operating System | Keepkey | Keepkey Firmware | All | All | All | All |
| Operating System | Keepkey | Keepkey Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| KeepKey Release Notes — v6.2.2. Download the latest KeepKey Client and… | by ShapeShift | ShapeShift Stories | Medium | MISC | medium.com | Release Notes, Third Party Advisory |
| KeepKey receive buffer vulnerability (VULN-1969) | invd blog | MISC | blog.inhq.net | |
| board: factor out tiny_dispatch · keepkey/keepkey-firmware@b222c66 · GitHub | MISC | github.com | Patch, Third Party Advisory |
| ShapeShift Security Update - ShapeShift Stories - Medium | CONFIRM | medium.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.