CVE-2022-2483
Summary
| CVE | CVE-2022-2483 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-01-06 22:15:00 UTC |
| Updated | 2023-11-07 03:46:00 UTC |
| Description | The bootloader in the Nokia ASIK AirScale system module (versions 474021A.101 and 474021A.102) loads public keys for firmware verification signature. If an attacker modifies the flash contents to corrupt the keys, secure boot could be permanently disabled on a given device. |
Risk And Classification
Problem Types: CWE-1282
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Nokia | Asik Airscale 474021a.101 | - | All | All | All |
| Operating System | Nokia | Asik Airscale 474021a.101 Firmware | - | All | All | All |
| Hardware | Nokia | Asik Airscale 474021a.102 | - | All | All | All |
| Operating System | Nokia | Asik Airscale 474021a.102 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Nokia ASIK AirScale System Module | CISA | MISC | www.cisa.gov | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.